CVE-2004-2442 - CVE House
Back to Database
Status published Medium CVE-2004-2442

Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation...

Vulnerability Description

Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2004-2442

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

f-secure anti-virus, f-secure for firewalls, f-secure internet security, f-secure personal express, internet gatekeeper
Vulnerable Versions:
4.51, 4.52, 4.60, 4.61, 5.0, 5.5, 5.41, 5.42, 5.43, 5.52, 5.55, 6.01, 6.2, 6.21, 6.30, 6.30_sr1, 6.31, 2004, 2005, 6.20, 4.5, 4.6, 4.7, 2.6, 6.3, 6.4, 6.32, 6.41

Timeline

Official Publish: August 20th, 2005
Last Modified: August 8th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.