A vulnerability affecting the F-Secure Antivirus engine was discovered when the engine tries to unpack a zip archive (LZW decompression method), and this can crash the scanning engine. The vulnerability can be exploited remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus engine.
- https://www.f-secure.com/en/business/support-and-downloads/security-advisories
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Team-BT5/WinAFL-RDP
- https://github.com/bacon-tomato-spaghetti/WinAFL-RDP
- https://github.com/googleprojectzero/winafl
- https://github.com/ssumachai/CS182-Project
- https://github.com/yrime/WinAflCustomMutate