AKB Forums

Go Back   AKB Forums > Technical sections > Software Security
Home Register Blogs FAQ Members List Calendar Downloads Arcade Mark Forums Read

Software Security Discussing software security algorithms, tricks, vulnerabilities

Troubles when posting message? Click here! :: Проблемы с отправлением сообщения? Нажмите сюда!

Reply
 
LinkBack Thread Tools Display Modes
Old Oct 5, 2005, 09:31   #1
Administrator
 
acid's Avatar
 
Join Date: Sep 2001
Location: South Korea, Gumi
Posts: 7,189
Blog Entries: 15
Rep Power: 10
Reputation: 313
Flaw found in Kaspersky antivirus

A "critical" flaw in Kaspersky Lab's antivirus software could let an attacker commandeer systems that use the products, a security researcher warned Monday.
The problem lies in Kaspersky's antivirus library, security researcher Alex Wheeler wrote in an advisory (download PDF of advisory here). The vulnerability likely affects multiple Kaspersky products on various platforms because the library is used throughout the company's consumer and corporate software, he said.
Additionally, third-party products that use Kaspersky's antivirus technology could also be vulnerable, Wheeler said.

A remote attacker could exploit the heap overflow flaw by sending a malformed CAB file--a compression file--to a vulnerable system, the French Security Incident Response Team said in an advisory. The CAB file could be sent in an e-mail, for example, and once the Kaspersky antivirus scanner had accepted it, the malicious code would be in the system. No user interaction is required, Wheeler said. FrSirt describes the issue as "critical," its highest rating.
A representative for Kaspersky in Moscow could not immediately comment on the issue and said that the Russian company would need to investigate.
Antivirus software is like low-hanging fruit to hackers, Yankee Group analysts wrote in a research paper released earlier this year. As the pool of easily exploitable security bugs in Microsoft Windows dries up, attackers are looking to security software for holes to get into systems, the analysts said.
At the Black Hat Briefings security conference this summer, researchers at Internet Security Systems outlined vulnerabilities in antivirus products. ISS has discovered bugs in products from security software makers including Symantec, McAfee, Trend Micro and F-Secure.

http://news.com.com/Flaw+found+in+Kaspersky+antivirus/2100-1002_3-5887857.html
__________________
Chat with acid


acid is offline   Reply With Quote Quote selected
Old Oct 6, 2005, 15:19   #2
Provocative
 
Red Stone's Avatar
 
Join Date: Sep 2002
Location: Ilha dos Amores
Posts: 1,409
Rep Power: 7
Reputation: 98
Oh! sh*t! Where can we feel safe???
__________________
Red Stone
J'ai besoin de toi,
De tes mains sur moi,
De ton corps doux et chaud,
J'ai envie d'être aimé Domino

From a beautiful love song of the 50s called Domino, music by Louis Ferrari, lyrics by Jacques Plante
Red Stone is offline   Reply With Quote Quote selected
Old Oct 6, 2005, 16:56   #3
инсценирующий жизнь
 
[ Xelgen ]'s Avatar
 
Join Date: Jul 2002
Location: Fireplace of Ecotopia
Posts: 4,165
Rep Power: 7
Reputation: 64
Send a message via ICQ to [ Xelgen ] Send a message via Skype™ to [ Xelgen ]
Hm, yes pretty..
BTW, dont' intsall KAV 2006 Beta, no your computers yet.. I've tested it, it is too buggy and it spoiled up my WinXP..
__________________
...ибо...
Rgrdz. [ Кселджэн ]
[ Xelgen ] is offline   Reply With Quote Quote selected
Old Oct 6, 2005, 17:19   #4
Авик
 
CyberJoe's Avatar
 
Join Date: Jul 2002
Location: Yerevan
Posts: 1,347
Rep Power: 7
Reputation: 19
Send a message via ICQ to CyberJoe
A касперский вчера скачал апдейт и попросил впервые рестарта.. ет ер??
__________________
вот собственно все, что я хотел сказать.
CyberJoe is offline   Reply With Quote Quote selected
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Ancient necropolis found in Egypt Astro Science and Education 2 Apr 21, 2005 09:35
New Mersenne Prime Found!!! Н.К.Рерих General 4 May 22, 2004 08:53
Udivitel'no moshniy antivirus!!! Will Shakespeare General 13 May 10, 2002 18:33
Antivirus dlya MAC.... louie General 0 Apr 26, 2002 16:07
kaspersky z0mbie General 5 Apr 2, 2002 22:39


All times are GMT. The time now is 04:37.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
This board was founded on September 29, 2001
Powered by Viper Internet

Affordable Web Hosting | ParevNet

Buy text link