Security Problems In Multiple Anti-virus Products


Recommended Posts

15 June 2009, 13:27

Security problems in multiple anti-virus products

"Symantec has reported a security problem in several of its anti-virus

products for business and private users. As a result of a bug, the software

can be fooled into overlooking malware when searching through specially

crafted archives. The manipulation to create such archives formats them

incorrectly, but even so, some applications and unpackers are still able to

extract files from them.

This lack of detection is a particular problem at security gateways on

network boundaries, with the result that for instance, for businesses, the

opportunity of detecting a possible infection threat is reduced to that last

line of defence, the anti-virus software on the end user's desktop. This

particularly reduces the effectiveness of multi-tier approaches that use

different anti-virus products.

Symantec nonetheless categorises the severity of the problem as low and in

its security advisory merely provides tips for possible workarounds, rather

than releasing an update. Administrators should, for example, change their

gateway settings so that damaged archives are discarded. The evaluation of

such vulnerabilities is a major point of distinction between different

anti-virus product vendors. Last year, F-Secure evaluated the risk from such

a vulnerability as high."

details Heise security -

http://www.h-online.com/security/Security-...s--/news/113529

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...