January 2006
F-Secure Security Bulletin FSC-2006-1rated Critical
ID: 00066
Ref: 65/2006
Date: 19 January 2006:10:49:01
Version: 1
Title: F-Secure Security Bulletin FSC-2006-1rated Critical
Abstract: Details of code execution vulnerability in ZIP and RAR-archive handling
Vendors affected: F-Secure
Operating systems affected: F-Secure
Applications affected: F-Secure
F-Secure have released a Critical advisory detailing a vulnerability in a number of their products whereby specially crafted ZIP archives may be used to execute code on affected systems. Both RAR- and ZIP-archives can in addition be crafted to avoid successful scanning and obfuscate malicious code in the archive.
Full details can be obtained from:
http://www.f-secure.com/security/fsc-2006-1.shtml