CVE-2008-5425Nod32 Antivirus vulnerability

3 documents3 sources
Severity
4.3MEDIUMNVD
CNA5.0
EPSS
0.7%
top 28.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 11
Latest updateMay 14

Description

ESet NOD32 2.70.0039.0000 does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibly (2) e-mail messages with many "Content-type: message/rfc822;" headers, which allows remote attackers to cause a denial of service (stack consumption or other resource consumption) via a large e-mail message, a related issue to CVE-2006-1173.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDeset/nod32_antivirus2.70.0039.0000

🔴Vulnerability Details

2
GHSA
GHSA-34wr-q9h7-hx52: ESet NOD32 22022-05-14
CVEList
CVE-2008-5425: ESet NOD32 22008-12-11
CVE-2008-5425 — Eset Nod32 Antivirus vulnerability | cvebase