|
RESEARCH
Security AdvisoriesF-Prot Antivirus for Linux corrupted ELF header Security Bypass.SynopsisIt is possible to protect an ELF binary against f-prot by corrupting its ELF header, while letting the binary completely functional. F-prot will crash when analyzing the file, letting the possible malware undetected.Affected SoftwareF-Prot version 4.6.8 for GNU/LinuxImpactRemote DoS, possibly remote code execution.Vendor ResponseNo vendor responseCreditsThis vulnerability was discovered by Security Researcher Jonathan Brossard from iViZ Techno Solutions Pvt. Ltd.Disclosure TimelineFirst private disclosure to vendor on September 1st 2008.Back to Security Advisories |
