CVE-2008-5523: Input Validation
avast! antivirus 4.8.1281.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5523?
CVE-2008-5523 is considered to have a moderate severity level as it allows attackers to bypass malware detection.
How do I fix CVE-2008-5523?
To fix CVE-2008-5523, users should update to a later version of avast! antivirus that addresses this vulnerability.
What software is affected by CVE-2008-5523?
CVE-2008-5523 specifically affects Avast Antivirus version 4.8.1281.0 when used with Internet Explorer 6 or 7.
Can I be attacked using CVE-2008-5523 if I use a different browser?
No, CVE-2008-5523 is specific to Internet Explorer 6 and 7, so using a different browser mitigates the risk.
What type of attack does CVE-2008-5523 involve?
CVE-2008-5523 involves a technique where attackers can manipulate the file extension and headers to bypass detection of malware.