CVE-2012-1463
Description
The ELF file parser in AhnLab V3 Internet Security 2011.01.18.00, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, F-Secure Anti-Virus 9.0.16160.0, McAfee Anti-Virus Scanning Engine 5.400.0.1158, Norman Antivirus 6.06.12, nProtect Anti-Virus 2011-01-17.01, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified endianness field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
23cpe:2.3:a:ahnlab:v3_internet_security:2011.01.18.00:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ahnlab:v3_internet_security:2011.01.18.00:*:*:*:*:*:*:*
- (no CPE)range: 2011.01.18.00
- cpe:2.3:a:authentium:command_antivirus:5.2.11.5:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:bitdefender:7.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:bitdefender:bitdefender:7.2:*:*:*:*:*:*:*
- (no CPE)range: 7.2
- cpe:2.3:a:cat:quick_heal:11.00:*:*:*:*:*:*:*
cpe:2.3:a:comodo:comodo_antivirus:7424:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:comodo:comodo_antivirus:7424:*:*:*:*:*:*:*
- (no CPE)range: 7424
- cpe:2.3:a:f-prot:f-prot_antivirus:4.6.2.117:*:*:*:*:*:*:*
- cpe:2.3:a:f-secure:f-secure_anti-virus:9.0.16160.0:*:*:*:*:*:*:*
- cpe:2.3:a:mcafee:scan_engine:5.400.0.1158:*:*:*:*:*:*:*
- cpe:2.3:a:norman:norman_antivirus_\&_antispyware:6.06.12:*:*:*:*:*:*:*
cpe:2.3:a:nprotect:nprotect_antivirus:2011-01-17.01:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:nprotect:nprotect_antivirus:2011-01-17.01:*:*:*:*:*:*:*
- (no CPE)range: 2011-01-17.01
- cpe:2.3:a:pandasecurity:panda_antivirus:10.0.2.7:*:*:*:*:*:*:*
- Range: 6.06.12
- Range: 9.0.16160.0
- Range: 11.00
- Range: 10.0.2.7
- Range: 5.400.0.1158
- Range: 5.2.11.5
Patches
Vulnerability mechanics
References
6News mentions
0No linked articles in our index yet.