F-Secure Internet Security 2010 における検知を回避される脆弱性
タイトル F-Secure Internet Security 2010 における検知を回避される脆弱性
概要

F-Secure Internet Security、Anti-Virus for Microsoft Exchange、Anti-Virus for MIMEsweeper、Internet Gatekeeper、Anti-Virus、Home Server Security、 Protection Service for Consumers、Protection Service for Business - Workstation security、Protection Service for Business - Server Security、および Protection Service for Business - E-mail and Server security、Mac Protection、Client Security、および複数の Anti-Virus 製品には、巧妙に細工された (1) 7Z アーカイブ、(2) GZIP アーカイブ、(3) CAB アーカイブおよび (4) RAR アーカイブ内のマルウェアを適切に検知しないため、検知を回避される脆弱性が存在します。

想定される影響 第三者により、検知を回避される可能性があります。
対策

ベンダより正式な対策が公開されています。ベンダ情報を参照して適切な対策を実施してください。

公表日 2010年4月15日0:00
登録日 2012年6月26日16:19
最終更新日 2012年6月26日16:19
CVSS2.0 : 警告
スコア 5
ベクター AV:N/AC:L/Au:N/C:N/I:P/A:N
影響を受けるシステム
エフ・セキュア
F-Secure Anti-Virus 2010 およびそれ以前
F-Secure Anti-Virus Consumer 版 9 およびそれ以前、Business 版 Workstation security 9 およびそれ以前、Business 版 Server Security 8 およびそれ以前、E-mail 版 Server security 9 およびそれ以前、Mac Protection build 8060 およびそれ以前
f-secure anti-virus client security 
f-secure anti-virus for citrix servers 
f-secure anti-virus for linux 
f-secure anti-virus for microsoft exchange 9 およびそれ以前
f-secure anti-virus for mimesweeper 5.61 およびそれ以前
f-secure anti-virus for windows servers 
f-secure anti-virus for workstations 
f-secure anti-virus linux server security 
F-Secure Home Server Security 2009
F-Secure Internet Gatekeeper Windows 版 6.61 およびそれ以前、Linux 版 4.02 およびそれ以前
F-Secure Internet Security 2010 およびそれ以前
CVE (情報セキュリティ 共通脆弱性識別子)
CWE (共通脆弱性タイプ一覧)
ベンダー情報
変更履歴
No 変更内容 変更日
0 [2012年06月26日]
  掲載
2018年2月17日10:37

NVD脆弱性情報
CVE-2010-1425
概要

F-Secure Internet Security 2010 and earlier; Anti-Virus for Microsoft Exchange 9 and earlier, and for MIMEsweeper 5.61 and earlier; Internet Gatekeeper for Windows 6.61 and earlier, and for Linux 4.02 and earlier; Anti-Virus 2010 and earlier; Home Server Security 2009; Protection Service for Consumers 9 and earlier, for Business - Workstation security 9 and earlier, for Business - Server Security 8 and earlier, and for E-mail and Server security 9 and earlier; Mac Protection build 8060 and earlier; Client Security 9 and earlier; and various Anti-Virus products for Windows, Linux, and Citrix; does not properly detect malware in crafted (1) 7Z, (2) GZIP, (3) CAB, or (4) RAR archives, which makes it easier for remote attackers to avoid detection.

公表日 2010年4月16日6:30
登録日 2021年1月29日10:59
最終更新日 2010年4月16日13:00
影響を受けるソフトウェアの構成
構成1 以上 以下 より上 未満
cpe:2.3:a:f-secure:anti-virus:6.62:-:microsoft_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:anti-virus:7.0:-:microsoft_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:anti-virus:7.10:-:microsoft_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:anti-virus:*:-:microsoft_exchange:*:*:*:*:* 9.00
cpe:2.3:a:f-secure:f-secure_anti-virus:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:*:*:linux_gateways:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2.16:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2.16:*:linux_gateways:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.50:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.50:*:linux:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.50_hotfix_1:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.50_hotfix_1:*:linux:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.50_hotfix_2:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.50_hotfix_2:*:linux:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.51:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.51:*:linux_gateways:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.51:*:linux_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.51:*:linux_workstations:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.51_hotfix_2:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.51_hotfix_2:*:linux:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.52:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.52:*:linux:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.52:*:linux_gateways:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.52:*:linux_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.52:*:linux_workstations:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.60:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.60:*:samba_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.61:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.61:*:linux_gateways:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.61:*:linux_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.62:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.62:*:samba_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.64:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.64:*:linux_gateways:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.64:*:linux_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.65:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.65:*:linux_gateways:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:4.65:*:linux_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.0:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.0:*:linux_client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.0:*:linux_server_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.01:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.01:*:linux_client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.01:*:linux_server_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.2.1:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.3.0:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.5:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.5:*:citrix_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.5:*:client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.5:*:mimesweeper:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.5:*:windows_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.11:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.11:*:linux_client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.11:*:linux_server_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.40:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.40:*:workstations:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.41:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.41:*:file_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.41:*:mimesweeper:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.41:*:windows_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.41:*:workstations:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.42:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.42:*:file_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.42:*:mimesweeper:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.42:*:windows_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.42:*:workstations:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.43:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.43:*:workstations:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.44:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.44:*:workstations:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.51:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.51:*:citrix_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.51:*:mimesweeper:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.52:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.52:*:citrix_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.52:*:client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.52:*:mimesweeper:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.52:*:windows_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.54:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.54:*:client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.55:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.55:*:client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.56:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.61:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:5.61:*:mimesweeper:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.01:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.01:*:client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.01:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.02:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.02:*:client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.2:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.2:*:firewalls:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.2:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.03:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.03:*:client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.21:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.21:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.30:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.30:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.30_sr1:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.30_sr1:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.31:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.31:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.40:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.40:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.60:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.60:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.61:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:6.61:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:7.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:7.00:*:client_security:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:7.00:*:ms_exchange:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:7.00:*:windows_servers:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:7.00:*:workstations:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:7.02:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2003:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2004:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2005:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2006:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2007:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2007:*:second:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2007:second_edition:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2008:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2009:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:*:*:*:*:*:*:*:* 2010
cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:6.03:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:6.04:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:7.01:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_client_security:7.10:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_citrix_servers:7.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_linux:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_linux:4.65:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_microsoft_exchange:6.62:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_microsoft_exchange:7.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_microsoft_exchange:7.10:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_mimesweeper:5.61:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_windows_servers:8.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:5.44:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:7.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:7.10:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:7.11:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.30:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.52:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.53:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.54:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_server_security:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_server_security:5.30:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_server_security:5.52:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_server_security:5.54:*:*:*:*:*:*:*
構成2 以上 以下 より上 未満
cpe:2.3:a:f-secure:f-secure_internet_security:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:7.02:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2003:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2004:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2005:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2006:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2007:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2007:*:second:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2007:second_edition:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2008:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2009:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:*:*:*:*:*:*:*:* 2010
cpe:2.3:a:f-secure:home_server_security:2009:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:internet_gatekeeper:*:-:linux:*:*:*:*:* 4.02
cpe:2.3:a:f-secure:internet_gatekeeper:*:-:windows:*:*:*:*:* 6.61
関連情報、対策とツール
共通脆弱性一覧