← Vulnerability feed

Vulnerability record · CVE-2005-3224 · published 14 October 2005

CVE-2005-3224: Avira antivir personal vulnerability

Avira · Antivir Personal

Multiple interpretation error in unspecified versions of AntiVir Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.

5.1 CVSS 2.0 Medium EPSS 1.7% · top 23.4%
5.1CVSS 2.0 base score
1.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
16 Jun 2026Last modified by NVD

Description

Multiple interpretation error in unspecified versions of AntiVir Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.

AV:N/AC:H/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2005-3224 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2007-1673Amavis vulnerabilityunzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a …EPSS 3.2%7.8CVE-2007-1671Avira antivir personal vulnerabilityavpack32.dll before 7.3.0.6 in Avira AntiVir allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry s…EPSS 2.0%7.2CVE-2008-6962Avira antivir improper input validation vulnerabilityAvira AntiVir Premium, Premium Security Suite, AntiVir Professional, and AntiVir Personal - FREE allows local users to execute arbitrary code via a c…EPSS 0.65%7.2CVE-2006-1274Avira antivir personal vulnerabilityClassic Planer in AntiVir PersonalEdition Classic 7 does not drop privileges before executing external programs, which allows local users to gain pri…EPSS 0.38%5.5CVE-2013-4602Avira antivir mailgate uncontrolled resource consumption vulnerabilityA Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified function in the PDF Scanner Engi…EPSS 1.4%5.1CVE-2005-3219Avira antivir personal vulnerabilityMultiple interpretation error in unspecified versions of Avira Antivirus allows remote attackers to bypass virus detection via a malicious executable…EPSS 1.7%4.6CVE-2006-4619Avira antivir personal vulnerabilityThe start update window in update.exe in Avira AntiVir PersonalEdition Classic 7.0 build 151 allows local users to gain system privileges via a "Shat…EPSS 0.33%

Source: NIST National Vulnerability Database (record CVE-2005-3224), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.