---
title: "CVE-2012-1443\n    | Ubuntu"
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2012-1443?format=md
keywords: index, follow
---

# CVE-2012-1443

Publication date 21 March 2012

Last updated 24 July 2024

---

Ubuntu priority

**Medium**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick
Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 20101.3.0.103
in Symantec Endpoint Protection 11, Command Antivirus 5.2.11.5, Ikarus
Virus Utilities T3 Command Line Scanner 1.1.97.0, Emsisoft Anti-Malware
5.1.0.1, PC Tools AntiVirus 7.0.3.5, F-Prot Antivirus 4.6.2.117,
VirusBuster 13.6.151.0, Fortinet Antivirus 4.2.254.0, Antiy Labs AVL SDK
2.0.3.7, K7 AntiVirus 9.77.3565, Trend Micro HouseCall 9.120.0.1004,
Kaspersky Anti-Virus 7.0.0.125, Jiangmin Antivirus 13.0.900, Antimalware
Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, Sophos Anti-Virus
4.61.0, NOD32 Antivirus 5795, Avira AntiVir 7.11.1.163, Norman Antivirus
6.06.12, McAfee Anti-Virus Scanning Engine 5.400.0.1158, Panda Antivirus
10.0.2.7, McAfee Gateway (formerly Webwasher) 2010.1C, Trend Micro
AntiVirus 9.120.0.1004, Comodo Antivirus 7424, Bitdefender 7.2, eSafe
7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, nProtect Anti-Virus
2011-01-17.01, AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus
10.0.0.1190, avast! Antivirus 4.8.1351.0 and 5.0.677.0, and VBA32 3.12.14.2
allows user-assisted remote attackers to bypass malware detection via a RAR
file with an initial MZ character sequence. NOTE: this may later be SPLIT
into multiple CVEs if additional information is published showing that the
error occurred independently in different RAR parser implementations.

[Read the notes from the security team](https://ubuntu.com/security/CVE-2012-1443?format=md#notes)

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| clamav | 12.04 LTS precise | Not affected |
| 11.10 oneiric | Not affected |
| 11.04 natty | Not affected |
| 10.10 maverick | Ignored end of life |
| 10.04 LTS lucid | Not affected |
| 8.04 LTS hardy | Not affected |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## Notes

---

### [mdeslaur](https://launchpad.net/~mdeslaur)

upstream says this doesn't apply to clamav

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1443)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2012-1443)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2012-1443)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2012-1443)

### Other references

* <http://www.ieee-security.org/TC/SP2012/program.html>
* <https://www.cve.org/CVERecord?id=CVE-2012-1443>
