PT-2005-2530 · Sophos · Sophos Anti-Virus
David Balazic
+1
·
Published
2005-05-14
·
Updated
2017-07-11
·
CVE-2005-1551
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Sophos Anti-Virus version 3.93
Description
The issue allows remote attackers to bypass virus protection due to a race condition. This occurs when downloaded files are not checked for viruses if they have only been written, and the file is executed before the antivirus starts on system reboot.
Recommendations
For Sophos Anti-Virus version 3.93, consider updating to a newer version that addresses this issue, as the current version does not properly check downloaded files for viruses, creating a potential security risk. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sophos Anti-Virus