CVE-2012-1452: Medium severity Cat Quick Heal vulnerability
The CAB file parser in Emsisoft Anti-Malware 5.1.0.1, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, and Quick Heal (aka Cat QuickHeal) 11.00 allows remote attackers to bypass malware detection via a CAB file with a modified reserved1 field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different CAB parser implementations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1452?
CVE-2012-1452 has a moderate severity level as it allows remote attackers to bypass malware detection in specific antivirus software.
What software is affected by CVE-2012-1452?
CVE-2012-1452 affects Emsisoft Anti-Malware version 5.1.0.1, Ikarus Virus Utilities T3 Command Line Scanner version 1.1.97.0, and Quick Heal version 11.00.
How do I fix CVE-2012-1452?
To fix CVE-2012-1452, ensure that you update to the latest versions of the affected software, which patch the vulnerability.
What types of attacks can exploit CVE-2012-1452?
CVE-2012-1452 can be exploited by remote attackers who craft a specific CAB file with a modified reserved1 field to bypass antivirus detection.
Is there a workaround for CVE-2012-1452?
Currently, the best workaround for CVE-2012-1452 is to regularly update your antivirus software and monitor for unusual activity.