CVE-2012-1440: Medium severity Aladdin eSafe vulnerability
The ELF file parser in Norman Antivirus 6.06.12, eSafe 7.0.17.0, CA eTrust Vet Antivirus 36.1.8511, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified identsize field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1440?
CVE-2012-1440 is classified as a medium severity vulnerability due to its potential to allow malware to bypass detection.
Which software products are affected by CVE-2012-1440?
CVE-2012-1440 affects Norman Antivirus 6.06.12, eSafe 7.0.17.0, CA eTrust Vet Antivirus 36.1.8511, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7.
How does CVE-2012-1440 allow bypassing malware detection?
CVE-2012-1440 allows attackers to bypass malware detection by exploiting a vulnerability in the ELF file parser through a modified identsize field.
How do I fix CVE-2012-1440?
To mitigate CVE-2012-1440, ensure that your antivirus software is updated to the latest version provided by the vendor.
What types of attacks does CVE-2012-1440 enable?
CVE-2012-1440 enables remote attackers to leverage modified ELF files to deploy malware unnoticed.