CVE Vulnerabilities

CVE-2008-6085

Published: Feb 06, 2009 | Modified: Aug 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, when configured to scan inside compressed archives, allows remote attackers to execute arbitrary code via a crafted RPM compressed archive file, which triggers a buffer overflow.

Affected Software

Name Vendor Start Version End Version
F-secure_anti-virus F-secure 7.02 (including) 7.02 (including)
F-secure_anti-virus F-secure 2006 (including) 2006 (including)
F-secure_anti-virus F-secure 2007 (including) 2007 (including)
F-secure_anti-virus F-secure 2008 (including) 2008 (including)
F-secure_anti-virus F-secure 2009 (including) 2009 (including)
F-secure_anti-virus_for_citrix_servers F-secure * 7.00 (including)
F-secure_anti-virus_for_microsoft_exchange F-secure * 7.10 (including)
F-secure_anti-virus_for_microsoft_exchange F-secure 6.62 (including) 6.62 (including)
F-secure_anti-virus_for_microsoft_exchange F-secure 7.00 (including) 7.00 (including)
F-secure_anti-virus_for_mimesweeper F-secure * 5.61 (including)
F-secure_anti-virus_for_windows_servers F-secure * 8.00 (including)
F-secure_anti-virus_for_workstations F-secure 7.10 (including) 7.10 (including)
F-secure_anti-virus_for_workstations F-secure 7.11 (including) 7.11 (including)
F-secure_anti-virus_linux_client_security F-secure * 5.54 (including)
F-secure_anti-virus_linux_client_security F-secure 5.30 (including) 5.30 (including)
F-secure_anti-virus_linux_client_security F-secure 5.52 (including) 5.52 (including)
F-secure_anti-virus_linux_client_security F-secure 5.53 (including) 5.53 (including)
F-secure_anti-virus_linux_server_security F-secure * 5.54 (including)
F-secure_anti-virus_linux_server_security F-secure 5.30 (including) 5.30 (including)
F-secure_anti-virus_linux_server_security F-secure 5.52 (including) 5.52 (including)
F-secure_client_security F-secure * 7.12 (including)
F-secure_client_security F-secure 7.11 (including) 7.11 (including)
F-secure_home_server_security F-secure 2009 (including) 2009 (including)
F-secure_internet_gatekeeper_for_linux F-secure * 2.16 (including)
F-secure_internet_gatekeeper_for_windows F-secure * 6.61 (including)
F-secure_internet_security F-secure 7.02 (including) 7.02 (including)
F-secure_internet_security F-secure 2006 (including) 2006 (including)
F-secure_internet_security F-secure 2007 (including) 2007 (including)
F-secure_internet_security F-secure 2008 (including) 2008 (including)
F-secure_internet_security F-secure 2009 (including) 2009 (including)
F-secure_linux_security F-secure * 7.01 (including)
F-secure_messaging_security_gateway F-secure * 5.0.4 (including)
F-secure_messaging_security_gateway F-secure 4.0.7 (including) 4.0.7 (including)
F-secure_protection_service_for_business F-secure * 3.10 (including)
F-secure_protection_service_for_business F-secure 3.00 (including) 3.00 (including)
F-secure_protection_service_for_consumers F-secure * 8.00 (including)
F-secure_protection_service_for_consumers F-secure 5.00 (including) 5.00 (including)
F-secure_protection_service_for_consumers F-secure 6.00 (including) 6.00 (including)
F-secure_protection_service_for_consumers F-secure 7.00 (including) 7.00 (including)

References