Skip to main content

F-Secure Products Binary Loading Vulnerability

Last Update Date: 28 Jan 2011 Release Date: 16 Dec 2010 5121 Views

RISK: Medium Risk

A vulnerability has been identified in F-Secure products, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by an error when loading binaries from the current working directory, which could allow attackers to execute arbitrary code by tricking a vulnerable application into opening a file from a disk resource.


Impact

  • Remote Code Execution

System / Technologies affected

  • F-Secure Internet Security 2010
  • F-Secure Internet Security 2011
  • F-Secure Anti-Virus 2010
  • F-Secure Anti-Virus 2011
  • F-Secure Client Security versions 9.00 through 9.01
  • F-Secure Anti-Virus for Workstations versions 9.00 through 9.01
  • F-Secure Anti-Virus for Windows Servers version 9.00
  • F-Secure Anti-Virus for Citrix Servers version 9.00
  • Solutions based on F-Secure Protection Service for Consumers version 9
  • Solutions based on F-Secure Protection Service for Business - Workstation security version 9
  • Solutions based on F-Secure Protection Service for Business - Email and Server Security version 9
  • Solutions based on F-Secure Protection Service for Business - Server Security version 9

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier

  • No CVE information is available

Source


Related Link