PT-2007-2941 · F Secure · F-Secure Anti-Virus Client Security
Publicado
2007-03-21
·
Atualizado
2018-10-16
·
CVE-2007-1557
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
F-Secure Anti-Virus Client Security version 6.02
Description
A format string issue allows local users to cause a denial of service and possibly gain privileges via format string specifiers in the
Management Server name field on the Communication settings page.Recommendations
For F-Secure Anti-Virus Client Security version 6.02, avoid using format string specifiers in the
Management Server name field until a fix is available. As a temporary workaround, consider restricting access to the Communication settings page to minimize the risk of exploitation.Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
F-Secure Anti-Virus Client Security