PT-2004-3242 · Sybari · Sybari Antigen For Domino

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-2348

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Sybari AntiGen for Domino version 7.0 Build 722 SR2
Description: The issue allows remote attackers to cause a denial of service, resulting in the system hanging, by using an encrypted ZIP file with the include full path info option set. This method is utilized by certain variants of the Beagle/Bagle worm.
Recommendations: For Sybari AntiGen for Domino version 7.0 Build 722 SR2, consider avoiding the use of encrypted ZIP files with the include full path info option set until a fix is available. As a temporary workaround, restrict the processing of such ZIP files to prevent the denial of service.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-2348

Affected Products

Sybari Antigen For Domino