CVE-2020-9342 describes a virus-detection bypass vulnerability in the F-Secure AV parsing engine, affecting Cloud Protection For Salesforce, Email and Server Security, and Internet GateKeeper versions before 17.0.605.474 on Linux. This medium-severity flaw (CVSS 5.5) allows an attacker to bypass virus detection by crafting specific Compression Method data within a GZIP archive, potentially leading to high integrity impact with user interaction required. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 17.0.605.474CPE matchmatch criteria | cpe:2.3:a:f-secure:cloud_protection_for_salesforce:*:*:*:*:*:linux_kernel:*:* | ||
< 17.0.605.474CPE matchmatch criteria | cpe:2.3:a:f-secure:email_and_server_security:*:*:*:*:*:linux_kernel:*:* | ||
< 17.0.605.474CPE matchmatch criteria | cpe:2.3:a:f-secure:internet_gatekeeper:*:*:*:*:*:linux_kernel:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.