CVE-2012-1435: Medium severity ahnlab v3 internet security vulnerability
The Microsoft EXE file parser in AhnLab V3 Internet Security 2011.01.18.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an EXE file with a \50\4B\4C\49\54\45 character sequence at a certain location. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different EXE parser implementations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1435?
CVE-2012-1435 is classified as a medium severity vulnerability due to its ability to allow remote attackers to bypass malware detection.
How do I fix CVE-2012-1435?
To remediate CVE-2012-1435, it is recommended to update the affected software to a version that addresses this vulnerability.
Which products are affected by CVE-2012-1435?
CVE-2012-1435 affects AhnLab V3 Internet Security 2011.01.18.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, and Panda Antivirus 10.0.2.7.
What symptoms indicate an issue related to CVE-2012-1435?
Systems vulnerable to CVE-2012-1435 may exhibit an inability to detect certain malicious EXE files.
Is there a workaround for CVE-2012-1435?
Currently, the best practice is to upgrade to the latest versions of the affected antivirus software to mitigate CVE-2012-1435.