CVE-2008-3447: Medium severity f-prot antivirus vulnerability
Published Aug 4, 2008
·Updated
The scanning engine in F-Prot Antivirus 6.2.1 4252 allows remote attackers to cause a denial of service (infinite loop) via a malformed ZIP archive, probably related to invalid offsets.
Affected Software
2 affected components
F-Prot F-Prot Antivirus=6.2.1.4252
F-Prot scanning engine=4.4.4.56
Event History
Aug 4, 2008
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3447?
CVE-2008-3447 is classified as a denial of service vulnerability.
2
How do I fix CVE-2008-3447?
To mitigate CVE-2008-3447, update to the latest version of F-Prot Antivirus that addresses this vulnerability.
3
What types of attacks does CVE-2008-3447 facilitate?
CVE-2008-3447 enables remote attackers to cause a denial of service through a malformed ZIP archive.
4
Which versions of F-Prot Antivirus are affected by CVE-2008-3447?
CVE-2008-3447 affects F-Prot Antivirus version 6.2.1 4252 and the scanning engine version 4.4.4.56.
5
How can I prevent exploitation of CVE-2008-3447?
To prevent exploitation of CVE-2008-3447, avoid opening or scanning suspicious ZIP archives and ensure your antivirus software is regularly updated.