CVE-2012-1436: Medium severity ahnlab v3 internet security vulnerability
The Microsoft EXE file parser in AhnLab V3 Internet Security 2011.01.18.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an EXE file with a \2D\6C\68 character sequence at a certain location. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different EXE parser implementations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1436?
CVE-2012-1436 is considered critical due to its ability to allow remote attackers to bypass malware detection.
How do I fix CVE-2012-1436?
To fix CVE-2012-1436, ensure that your antivirus software is updated to the latest version that addresses this vulnerability.
Which software is affected by CVE-2012-1436?
CVE-2012-1436 affects AhnLab V3 Internet Security, Emsisoft Anti-Malware, eSafe, Ikarus Virus Utilities, and Panda Antivirus.
Can CVE-2012-1436 allow malware to install without detection?
Yes, CVE-2012-1436 allows attackers to use specific EXE files to evade detection by the affected antivirus products.
What types of attacks can exploit CVE-2012-1436?
CVE-2012-1436 can be exploited through remote attacks that utilize specially crafted EXE files.