F-Secure Products Binary Loading Vulnerability
Last Update Date:
28 Jan 2011
Release Date:
16 Dec 2010
5873
Views
RISK: Medium Risk
A vulnerability has been identified in F-Secure products, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by an error when loading binaries from the current working directory, which could allow attackers to execute arbitrary code by tricking a vulnerable application into opening a file from a disk resource.
Impact
- Remote Code Execution
System / Technologies affected
- F-Secure Internet Security 2010
- F-Secure Internet Security 2011
- F-Secure Anti-Virus 2010
- F-Secure Anti-Virus 2011
- F-Secure Client Security versions 9.00 through 9.01
- F-Secure Anti-Virus for Workstations versions 9.00 through 9.01
- F-Secure Anti-Virus for Windows Servers version 9.00
- F-Secure Anti-Virus for Citrix Servers version 9.00
- Solutions based on F-Secure Protection Service for Consumers version 9
- Solutions based on F-Secure Protection Service for Business - Workstation security version 9
- Solutions based on F-Secure Protection Service for Business - Email and Server Security version 9
- Solutions based on F-Secure Protection Service for Business - Server Security version 9
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with