First published: Wed Mar 21 2012(Updated: )
The ELF file parser in Norman Antivirus 6.06.12, eSafe 7.0.17.0, CA eTrust Vet Antivirus 36.1.8511, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified identsize field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Aladdin eSafe | =7.0.17.0 | |
CA eTrust Vet Antivirus | =36.1.8511 | |
Fortinet Antivirus | =4.2.254.0 | |
Norman Antivirus & Antispyware | =6.06.12 | |
Panda Security | =10.0.2.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-1440 is classified as a medium severity vulnerability due to its potential to allow malware to bypass detection.
CVE-2012-1440 affects Norman Antivirus 6.06.12, eSafe 7.0.17.0, CA eTrust Vet Antivirus 36.1.8511, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7.
CVE-2012-1440 allows attackers to bypass malware detection by exploiting a vulnerability in the ELF file parser through a modified identsize field.
To mitigate CVE-2012-1440, ensure that your antivirus software is updated to the latest version provided by the vendor.
CVE-2012-1440 enables remote attackers to leverage modified ELF files to deploy malware unnoticed.