CVE-2012-1433: Medium severity ahnlab v3 internet security vulnerability
The Microsoft EXE file parser in AhnLab V3 Internet Security 2011.01.18.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an EXE file with a \4a\46\49\46 character sequence at a certain location. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different EXE parser implementations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1433?
CVE-2012-1433 is considered medium severity as it allows remote attackers to bypass malware detection.
How does CVE-2012-1433 affect AhnLab V3 Internet Security?
CVE-2012-1433 affects AhnLab V3 Internet Security 2011.01.18.00 by enabling detection bypass through specially crafted EXE files.
What versions are vulnerable to CVE-2012-1433?
CVE-2012-1433 impacts AhnLab V3 Internet Security 2011.01.18.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, and Panda Antivirus 10.0.2.7.
How can I mitigate CVE-2012-1433?
To mitigate CVE-2012-1433, update the affected antivirus software to the latest versions or apply the vendor's patches.
What types of exploits are possible with CVE-2012-1433?
CVE-2012-1433 can be exploited by uploading specially crafted EXE files that may evade detection by the mentioned anti-malware solutions.