The CAB file parser in Emsisoft Anti-Malware 5.1.0.1, Sophos Anti-Virus 4.61.0, and Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0 allows remote attackers to bypass malware detection via a CAB file with a modified reserved3 field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different CAB parser implementations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Anti-malware | Emsisoft | 5.1.0.1 (including) | 5.1.0.1 (including) |
Ikarus_virus_utilities_t3_command_line_scanner | Ikarus | 1.1.97.0 (including) | 1.1.97.0 (including) |
Sophos_anti-virus | Sophos | 4.61.0 (including) | 4.61.0 (including) |