CVE-2004-1096

N/A Unknown
Published: January 10, 2005 Modified: April 16, 2026
View on NVD

Description

Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.gentoo.org/security/en/glsa/glsa-200410-31.xml
Source: cve@mitre.org
Patch Vendor Advisory
http://www.kb.cert.org/vuls/id/492545
Source: cve@mitre.org
US Government Resource
http://www.securityfocus.com/bid/11448
Source: cve@mitre.org
Exploit Patch Vendor Advisory
http://secunia.com/advisories/13038/
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.gentoo.org/security/en/glsa/glsa-200410-31.xml
Source: af854a3a-2127-422b-91ae-364da2661108
Patch Vendor Advisory
http://www.kb.cert.org/vuls/id/492545
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
http://www.mandriva.com/security/advisories?name=MDKSA-2004:118
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/11448
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Patch Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/17761
Source: af854a3a-2127-422b-91ae-364da2661108

14 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
20.3%
96th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

broadcom gentoo sophos mandrakesoft suse ca rav_antivirus mcafee eset_software kaspersky_lab