CVE-2008-3244: Input Validation
The scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allows remote attackers to cause a denial of service (engine crash) via a CHM file with a large nbdir value that triggers an out-of-bounds read.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3244?
CVE-2008-3244 has a high severity level due to the potential for remote denial of service attacks.
How do I fix CVE-2008-3244?
To fix CVE-2008-3244, update F-Prot Antivirus to version 6.0.9.0 or later.
What versions of F-Prot Antivirus are affected by CVE-2008-3244?
CVE-2008-3244 affects F-Prot Antivirus versions prior to 6.0.9.0, including various versions from 3.11b to 4.6.6.
Is CVE-2008-3244 being exploited in the wild?
There have been no widespread reports of exploitation in the wild for CVE-2008-3244, but vulnerabilities should always be addressed promptly.
What type of attack does CVE-2008-3244 enable?
CVE-2008-3244 enables a remote denial of service attack by exploiting an out-of-bounds read in the F-Prot Antivirus scanning engine.