F-Secure Anti-Virus for MIMEsweeper 5.61 Hotfix 3
Published:
May 30, 2007
Note: There is a service release available at http://www.f-secure.com/webclub/fsavmime.html which solves the described vulnerabilities. It is recommended that you download the service release instead of the hotfix. However, if the service release is not feasible, download this hotfix.
This hotfix solves the following vulnerabilities:
- Several F-Secure products have a buffer overflow vulnerability in processing LHA archives. This may allow an attacker to execute arbitrary code or to create a denial-of-service condition. This vulnerability is related to a similar vulnerability in GZIP program’s handling of LZH-compressed archives.
This vulnerability is described in detail in F-Secure Security Advisory FSC-2007-1.
- IOCTL (Input/Output Control) vulnerability in Real-time Scanning component may allow an attacker to gain elevated privileges to the system.
This vulnerability is described in detail in F-Secure Security Advisory FSC-2007-2.
Restart is required after installing this hotfix.
F-Secure Anti-Virus for MIMEsweeper 5.61 Hotfix 3 (887 KB, fsfix)
F-Secure Anti-Virus for MIMEsweeper 5.61 Hotfix 3 (887 KB, jar)