cbcvebase.
CVE-2012-1462
published 2012-03-21

CVE-2012-1462: The ZIP file parser in AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware…

medium4.3CVSS 3.1
AVNACMAuNCNIPAN
The ZIP file parser in AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, Kaspersky Anti-Virus 7.0.0.125, Norman Antivirus 6.06.12, Sophos Anti-Virus 4.61.0, and AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11 allows remote attackers to bypass malware detection via a ZIP file containing an invalid block of data at the beginning. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ZIP parser implementations.

Affected

10 ranges
VendorProductVersion rangeFixed in
ahnlabv3_internet_security
aladdinesafe
avgavg_anti-virus
catquick_heal
emsisoftanti-malware
fortinetfortinet_antivirus
ikarusikarus_virus_utilities_t3_command_line_scanner
jiangminjiangmin_antivirus
kasperskykaspersky_anti-virus
symantecendpoint_protection