Unknown
CVE-2008-6085
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, when configured to scan inside compressed archives, allows remote attackers to execute arbitrary code via a crafted RPM compressed archive file, which triggers a buffer overflow.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- f-secure anti-virus 2006,
- f-secure anti-virus 2007,
- f-secure anti-virus 2008,
- f-secure anti-virus 2009,
- f-secure anti-virus 7.02,
- f-secure anti-virus for citrix servers,
- f-secure anti-virus for microsoft exchange,
- f-secure anti-virus for microsoft exchange 6.62,
- f-secure anti-virus for microsoft exchange 7.00,
- f-secure anti-virus for mimesweeper,
- f-secure anti-virus for windows servers,
- f-secure anti-virus for workstations 7.10,
- f-secure anti-virus for workstations 7.11,
- f-secure anti-virus linux client security,
- f-secure anti-virus linux client security 5.30,
- f-secure anti-virus linux client security 5.52,
- f-secure anti-virus linux client security 5.53,
- f-secure anti-virus linux server security,
- f-secure anti-virus linux server security 5.30,
- f-secure anti-virus linux server security 5.52,
- f-secure client security,
- f-secure client security 7.11,
- f-secure home server security 2009,
- f-secure internet gatekeeper for linux,
- f-secure internet gatekeeper for windows,
- f-secure internet security 2006,
- f-secure internet security 2007,
- f-secure internet security 2008,
- f-secure internet security 2009,
- f-secure internet security 7.02,
- f-secure linux security,
- f-secure messaging security gateway,
- f-secure messaging security gateway 4.0.7,
- f-secure protection service for business,
- f-secure protection service for business 3.00,
- f-secure protection service for consumers,
- f-secure protection service for consumers 5.00,
- f-secure protection service for consumers 6.00,
- f-secure protection service for consumers 7.00
References
Advisory
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: