CVE-2012-1462
published 2012-03-21CVE-2012-1462: The ZIP file parser in AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware…
PriorityP342medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
97.84%
99.9th percentile
The ZIP file parser in AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, Kaspersky Anti-Virus 7.0.0.125, Norman Antivirus 6.06.12, Sophos Anti-Virus 4.61.0, and AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11 allows remote attackers to bypass malware detection via a ZIP file containing an invalid block of data at the beginning. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ZIP parser implementations.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ahnlab | v3_internet_security | — | — |
| aladdin | esafe | — | — |
| avg | avg_anti-virus | — | — |
| cat | quick_heal | — | — |
| emsisoft | anti-malware | — | — |
| fortinet | fortinet_antivirus | — | — |
| ikarus | ikarus_virus_utilities_t3_command_line_scanner | — | — |
| jiangmin | jiangmin_antivirus | — | — |
| kaspersky | kaspersky_anti-virus | — | — |
| symantec | endpoint_protection | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-5060 mysql: unspecified DoS vulnerability related to GIS (CPU Jan 2013)
bugzilla·2013-01-16·CVSS 6.8
CVE-2012-5060 [MEDIUM] CVE-2012-5060 mysql: unspecified DoS vulnerability related to GIS (CPU Jan 2013)
CVE-2012-5060 mysql: unspecified DoS vulnerability related to GIS (CPU Jan 2013)
An unspecified vulnerability in the GIS extension subcomponent of the MySQL protocol component of the Oracle MySQL server allows remote authenticated attackers to alter availability via unspecified vectors.
References:
[1] http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.html
Discussion:
According to Oracle CPU data, this issue affected "5.1.65 and earlier, 5.5.27 and earlier", hence it should be fixed in 5.1.66. MySQL packages in Red Hat Enterprise Linux 6 were updated to 5.1.66 via RHSA-2012:1462:
https://rhn.redhat.com/errata/RHSA-2012-1462.html
Bugzilla
CVE-2012-3197 mysql: unspecified DoS vulnerability related to Server Replication (CPU Oct 2012)
bugzilla·2012-10-17·CVSS 3.5
CVE-2012-3197 [LOW] CVE-2012-3197 mysql: unspecified DoS vulnerability related to Server Replication (CPU Oct 2012)
CVE-2012-3197 mysql: unspecified DoS vulnerability related to Server Replication (CPU Oct 2012)
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3197 to
the following vulnerability:
Name: CVE-2012-3197
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3197
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote
authenticated users to affect availability via unknown vectors related
to Server Replication.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html
Bugzilla
CVE-2012-3158 mysql: unspecified vulnerability related to the MySQL Protocol (CPU Oct 2012)
bugzilla·2012-10-17·CVSS 7.5
CVE-2012-3158 [HIGH] CVE-2012-3158 mysql: unspecified vulnerability related to the MySQL Protocol (CPU Oct 2012)
CVE-2012-3158 mysql: unspecified vulnerability related to the MySQL Protocol (CPU Oct 2012)
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3158 to
the following vulnerability:
Name: CVE-2012-3158
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3158
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote
attackers to affect confidentiality, integrity, and availability via
unknown vectors related to Protocol.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html
Bugzilla
CVE-2012-3163 mysql: unspecified vulnerability related to Information Schema (CPU Oct 2012)
bugzilla·2012-10-17·CVSS 9.0
CVE-2012-3163 [CRITICAL] CVE-2012-3163 mysql: unspecified vulnerability related to Information Schema (CPU Oct 2012)
CVE-2012-3163 mysql: unspecified vulnerability related to Information Schema (CPU Oct 2012)
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3163 to
the following vulnerability:
Name: CVE-2012-3163
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3163
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote
authenticated users to affect confidentiality, integrity, and
availability via unknown vectors related to Information Schema.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012
Bugzilla
CVE-2012-3177 mysql: unspecified Server DoS vulnerability (CPU Oct 2012)
bugzilla·2012-10-17·CVSS 6.8
CVE-2012-3177 [MEDIUM] CVE-2012-3177 mysql: unspecified Server DoS vulnerability (CPU Oct 2012)
CVE-2012-3177 mysql: unspecified Server DoS vulnerability (CPU Oct 2012)
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3177 to
the following vulnerability:
Name: CVE-2012-3177
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3177
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows remote
authenticated users to affect availability via unknown vectors related
to Server.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html
Bugzilla
CVE-2012-3167 mysql: unspecified DoS vulnerability related to Server Full Text Search (CPU Oct 2012)
bugzilla·2012-10-17·CVSS 3.5
CVE-2012-3167 [LOW] CVE-2012-3167 mysql: unspecified DoS vulnerability related to Server Full Text Search (CPU Oct 2012)
CVE-2012-3167 mysql: unspecified DoS vulnerability related to Server Full Text Search (CPU Oct 2012)
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3167 to
the following vulnerability:
Name: CVE-2012-3167
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3167
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.63 and earlier, and 5.5.25 and earlier, allows remote
authenticated users to affect availability via unknown vectors related
to Server Full Text Search.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html
---
S
Bugzilla
CVE-2012-3180 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Oct 2012)
bugzilla·2012-10-17·CVSS 4.0
CVE-2012-3180 [MEDIUM] CVE-2012-3180 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Oct 2012)
CVE-2012-3180 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Oct 2012)
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3180 to
the following vulnerability:
Name: CVE-2012-3180
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3180
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows remote
authenticated users to affect availability via unknown vectors related
to Server Optimizer.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html
Bugzilla
CVE-2012-3150 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Oct 2012)
bugzilla·2012-10-17·CVSS 4.0
CVE-2012-3150 [MEDIUM] CVE-2012-3150 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Oct 2012)
CVE-2012-3150 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Oct 2012)
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3150 to
the following vulnerability:
Name: CVE-2012-3150
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3150
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote
authenticated users to affect availability via unknown vectors related
to Server Optimizer.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html
Bugzilla
CVE-2012-3166 mysql: unspecified DoS vulnerability related to InnoDB (CPU Oct 2012)
bugzilla·2012-10-17·CVSS 4.0
CVE-2012-3166 [MEDIUM] CVE-2012-3166 mysql: unspecified DoS vulnerability related to InnoDB (CPU Oct 2012)
CVE-2012-3166 mysql: unspecified DoS vulnerability related to InnoDB (CPU Oct 2012)
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3166 to
the following vulnerability:
Name: CVE-2012-3166
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3166
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.63 and earlier, and 5.5.25 and earlier, allows remote
authenticated users to affect availability via unknown vectors related
to InnoDB.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html
Bugzilla
CVE-2012-1690 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Apr 2012)
bugzilla·2012-04-19·CVSS 4.0
CVE-2012-1690 [MEDIUM] CVE-2012-1690 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Apr 2012)
CVE-2012-1690 mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Apr 2012)
Unspecified vulnerability in the server optimizer subcomponent of the Oracle MySQL server could allow authenticated database users to cause a hang or frequently repeatable crash of the MySQL server via multiple protocols.
Upstream announced, supported MySQL server versions, vulnerable to this flaw:
5.1.61 and earlier and 5.5.21 and earlier
References:
[1] http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html#AppendixMSQL
[2] http://www.oracle.com/technetwork/topics/security/cpuapr2012verbose-366316.html#Oracle%20MySQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.
Bugzilla
CVE-2012-1688 mysql: unspecified DoS vulnerability related to DML (CPU Apr 2012)
bugzilla·2012-04-19·CVSS 4.0
CVE-2012-1688 [MEDIUM] CVE-2012-1688 mysql: unspecified DoS vulnerability related to DML (CPU Apr 2012)
CVE-2012-1688 mysql: unspecified DoS vulnerability related to DML (CPU Apr 2012)
Unspecified vulnerability in the DML subcomponent of the Oracle MySQL server could allow authenticated database users to cause a hang or frequently repeatable crash of the MySQL server via multiple protocols.
Upstream announced, supported MySQL server versions, vulnerable to this flaw:
5.1.61 and earlier and 5.5.21 and earlier
References:
[1] http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html#AppendixMSQL
[2] http://www.oracle.com/technetwork/topics/security/cpuapr2012verbose-366316.html#Oracle%20MySQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html
http://www.ieee-security.org/TC/SP2012/program.htmlhttp://www.securityfocus.com/archive/1/522005http://www.securityfocus.com/bid/52613https://exchange.xforce.ibmcloud.com/vulnerabilities/74310http://www.ieee-security.org/TC/SP2012/program.htmlhttp://www.securityfocus.com/archive/1/522005http://www.securityfocus.com/bid/52613https://exchange.xforce.ibmcloud.com/vulnerabilities/74310
2012-03-21
Published