Skip Navigation

  • Home
  • Contact us
  • FAQ
  • Glossary
  • Public key
  • Sitemap
  • Cymraeg
  • What's new
CPNI - Centre for the Protection of National Infastructure

Advanced search

  • About CPNI
  • The threats
  • Security planning
  • Methods of attack
  • Protecting your assets
  • Products and services
    • CSIRTUK advisories
      • Advisories archive
    • General protective security publications
    • InfoSec briefings
    • InfoSec technical notes
    • InfoSec vulnerability disclosures
    • Good practice guidelines
    • Viewpoints
    • Information exchanges
    • Risk Management Delivery Group
  • Research
Home > Products and services > CSIRTUK advisories > Advisories archive > January 2006 > F-Secure Security Bulletin FSC-2006-1rated Critical

January 2006

F-Secure Security Bulletin FSC-2006-1rated Critical

ID: 00066
Ref: 65/2006
Date: 19 January 2006:10:49:01
Version: 1

Title: F-Secure Security Bulletin FSC-2006-1rated Critical
Abstract: Details of code execution vulnerability in ZIP and RAR-archive handling
Vendors affected: F-Secure
Operating systems affected: F-Secure
Applications affected: F-Secure

F-Secure have released a Critical advisory detailing a vulnerability in a number of their products whereby specially crafted ZIP archives may be used to execute code on affected systems. Both RAR- and ZIP-archives can in addition be crafted to avoid successful scanning and obfuscate malicious code in the archive.

Full details can be obtained from:
http://www.f-secure.com/security/fsc-2006-1.shtml
  • Accessibility |
  • Terms and conditions |
  • Privacy statement |
  • Data protection act |
  • Freedom of information |