PT-2005-4039 · Softguy+4 · Powerzip+5
Froggz
·
Published
2005-10-14
·
Updated
2021-04-09
·
CVE-2005-3225
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
eTrust-Iris (affected versions not specified)
eTrust-Vet Antivirus (affected versions not specified)
Description
The issue allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers. This can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bitzipper
Powerzip
Winrar
Winzip
Etrust-Iris
Ca Etrust Vet Antivirus