CVE-2012-1454: Medium severity Aladdin eSafe vulnerability
The ELF file parser in Dr.Web 5.0.2.03300, eSafe 7.0.17.0, McAfee Gateway (formerly Webwasher) 2010.1C, Rising Antivirus 22.83.00.03, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified eiversion field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1454?
CVE-2012-1454 has a medium severity level due to its ability to bypass malware detection.
How do I fix CVE-2012-1454?
To fix CVE-2012-1454, update your antivirus software to the latest version provided by your vendor.
What types of software are affected by CVE-2012-1454?
CVE-2012-1454 affects various antivirus solutions including Dr.Web, Fortinet Antivirus, and McAfee Gateway.
What is the exploit mechanism of CVE-2012-1454?
CVE-2012-1454 allows attackers to modify the ei_version field in ELF files to evade detection.
Can CVE-2012-1454 lead to further attacks?
Yes, exploiting CVE-2012-1454 can potentially allow attackers to deliver malware without detection.