{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"Solutions bas\u00e9es sur F-Secure Protection Service pour Business - Workstation security version 9 et ant\u00e9rieures ;","product":{"name":"Security","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Internet Gatekeeper pour Windows 6.61 et ant\u00e9rieures ;","product":{"name":"Windows","vendor":{"name":"Microsoft","scada":false}}},{"description":"F-Secure Anti-Virus pour Linux Servers 4.65 ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"F-Secure Internet Gatekeeper pour Linux 4.02 et ant\u00e9rieures ;","product":{"name":"N/A","vendor":{"name":"ESET","scada":false}}},{"description":"Services bas\u00e9s sur F-Secure Mac Protection build 8060 et ant\u00e9rieures ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"F-Secure Anti-Virus Linux Client Security 5.54 et ant\u00e9rieures ;","product":{"name":"Security","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Anti-Virus Linux Server Security 5.54 et ant\u00e9rieures ;","product":{"name":"Server Security","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Linux Security 7.03 et ant\u00e9rieures ;","product":{"name":"Security","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Anti-Virus pour Workstations 9 et ant\u00e9rieures ;","product":{"name":"N/A","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Anti-Virus pour Microsoft Exchange 9 et ant\u00e9rieures ;","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Solutions bas\u00e9es sur F-Secure Protection Service pour Business - Server Security version 8 et ant\u00e9rieures ;","product":{"name":"Server Security","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Anti-Virus pour Citrix Servers 9 et ant\u00e9rieures.","product":{"name":"N/A","vendor":{"name":"Citrix","scada":false}}},{"description":"F-Secure Anti-Virus 2010 et ant\u00e9rieures ;","product":{"name":"N/A","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Anti-Virus pour MIMEsweeper 5.61 et ant\u00e9rieures ;","product":{"name":"N/A","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Anti-Virus pour Windows Servers 9 et ant\u00e9rieures ;","product":{"name":"Windows","vendor":{"name":"Microsoft","scada":false}}},{"description":"F-Secure Client Security 9 et ant\u00e9rieures ;","product":{"name":"Security","vendor":{"name":"ESET","scada":false}}},{"description":"Solutions bas\u00e9es sur F-Secure Protection Service pour Consumers version 9 et ant\u00e9rieures ;","product":{"name":"N/A","vendor":{"name":"ESET","scada":false}}},{"description":"F-Secure Home Server Security 2009 ;","product":{"name":"Server Security","vendor":{"name":"ESET","scada":false}}}],"affected_systems_content":null,"content":"## Description\n\nUne vuln\u00e9rabilit\u00e9 dans les produits F-Secure permet, \u00e0 une personne\nmalveillante, de construire des archives (7Z, GZIP, CAB ou RAR)\nsp\u00e9cialement form\u00e9es contournant le moteur de d\u00e9tection de l'Anti-Virus.\nLes fichiers malveillants contenus dans ces archives ne seront donc pas\nd\u00e9tect\u00e9s.\n\nCependant cela n'affecte pas le m\u00e9canisme de d\u00e9tection lorsque ces\nfichiers sont extraits des archives.\n\n## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[],"links":[],"reference":"CERTA-2010-AVI-166","revisions":[{"description":"version initiale.","revision_date":"2010-04-13T00:00:00.000000"}],"risks":[{"description":"Contournement de la politique de s\u00e9curit\u00e9"}],"summary":"Une vuln\u00e9rabilit\u00e9 dans la gestion des archives <span class=\"textit\">7Z,\nGZIP, CAB</span> ou <span class=\"textit\">RAR</span> permet de contourner\nle moteur de d\u00e9tection de l'<span class=\"textit\">Anti-Virus</span>.\n","title":"Vuln\u00e9rabilit\u00e9 dans F-Secure","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 F-Secure FSC-2010-1 du 12 avril 2010","url":"http://www.f-secure.com/en_EMEA/support/security-advisory/fsc-2010-1.html"}]}
