First published: Sun Aug 26 2012(Updated: )
The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not check whether X.509 certificates in signed executable files have been revoked, which has unknown impact and remote attack vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Comodo Internet Security | <=5.3.174622.1216 | |
Comodo Internet Security | =3.0.14.276 | |
Comodo Internet Security | =3.0.15.277 | |
Comodo Internet Security | =3.0.16.295 | |
Comodo Internet Security | =3.0.17.304 | |
Comodo Internet Security | =3.0.18.309 | |
Comodo Internet Security | =3.0.19.318 | |
Comodo Internet Security | =3.0.20.320 | |
Comodo Internet Security | =3.0.22.349 | |
Comodo Internet Security | =3.0.23.364 | |
Comodo Internet Security | =3.0.24.368 | |
Comodo Internet Security | =3.0.25.378 | |
Comodo Internet Security | =3.5.53896.424 | |
Comodo Internet Security | =3.5.54375.427 | |
Comodo Internet Security | =3.5.55810.432 | |
Comodo Internet Security | =3.5.57173.439 | |
Comodo Internet Security | =3.8.64263.468 | |
Comodo Internet Security | =3.8.64739.471 | |
Comodo Internet Security | =3.8.65951.477 | |
Comodo Internet Security | =3.9.95478.509 | |
Comodo Internet Security | =3.10.102363.531 | |
Comodo Internet Security | =3.11.108364.552 | |
Comodo Internet Security | =3.12.111745.560 | |
Comodo Internet Security | =3.13.121240.574 | |
Comodo Internet Security | =3.13.125662.579 | |
Comodo Internet Security | =3.14.130099.587 | |
Comodo Internet Security | =4.0.138377.779 | |
Comodo Internet Security | =4.0.141842.828 | |
Comodo Internet Security | =4.1.150349.920 | |
Comodo Internet Security | =5.0.163652.1142 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2011-5123 is rated as moderate due to its potential impact on certificate validation.
To fix CVE-2011-5123, upgrade Comodo Internet Security to version 5.3.175888.1227 or later.
CVE-2011-5123 affects multiple versions of Comodo Internet Security prior to 5.3.175888.1227.
The impact of CVE-2011-5123 includes potential exploitation through unrevoked X.509 certificates in signed executables.
There is no official workaround for CVE-2011-5123; updating to the latest version is recommended.