| Vigil@nce team describes computer vulnerabilities impacting your systems, and offers solutions to correct them. |
|
 |
|
|
|
vulnerability 8795
Norman Antivirus: bypassing via RAR
Synthesis of the vulnerability
| An attacker can create a RAR archive containing a virus which is not detected by Norman products. |
Severity: 2/4.
Creation date: 15/06/2009.
|
Description of the vulnerability
Norman products detect viruses contained in RAR archives.
However, an attacker can create a slightly malformed archive (Size and Method), which can still be opened by Unrar tools, but which cannot be opened by the antivirus.
An attacker can therefore create a RAR archive containing a virus which is not detected by Norman products. |
Complete Vigil@nce bulletin
Characteristics
Title: Norman Antivirus: bypassing via RAR.
Keywords: Antivirus Method Norman RAR Size Unrar bypassing.
Identifiers: BID-35357, TZO-32-2009, VIGILANCE-VUL-8795.
|
Information sources
Solutions for this vulnerability
Computer vulnerabilities tracking service
The Vigil@nce computer vulnerability tracking service alerts your teams of vulnerabilities or threats impacting your information system.
The Vigil@nce vulnerability database contains several thousand vulnerabilities.
This bulletin is published by the Vigil@nce team, which tracks computer vulnerabilities impacting systems and applications.
Computer vulnerability database
|