The OLE2 parsing in Norman Antivirus before 5.91.02 allows remote attackers to bypass the malware detection via a crafted DOC file, resulting from an "integer cast around".
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2007/2619 | vdb entry |
http://www.securityfocus.com/archive/1/474428/100/0/threaded | mailing list |
http://securityreason.com/securityalert/2913 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/35558 | vdb entry |
http://osvdb.org/37981 | vdb entry |
http://www.securityfocus.com/bid/25020 | vdb entry |
http://secunia.com/advisories/26178 | third party advisory |
http://www.securitytracker.com/id?1018438 | vdb entry |
http://www.nruns.com/security_advisory_norman_antivirus_doc_depection_bypass.php |