int(2746)

Vulnerability Bulletins


Denegación de servicio en Symantec SymEvent driver

Vulnerability classification

Property Value
Confidence level Oficial
Impact Denegación de Servicio
Dificulty Principiante
Required attacker level Acceso remoto sin cuenta a un servicio exotico

System information

Property Value
Affected manufacturer Comercial Software
Affected software Symantec Norton Personal Firewall
Symantec Norton Internet Security
Symantec Norton AntiVirus
Symantec Norton SystemWorks
Symantec Client Security (SCS 1.x, 2.x 3.0)
Symantec Client Security 3.1
Symantec AntiVirus Corporate Edition SAVCE 8.x, 9.x, 10.0
Symantec AntiVirus Corporate Edition 10.1
Symantec pcAnywhere 11.5
Symantec Host IDS

Description

Se ha descubierto una vulnerabilidad en varios productos de Symantec. La vulnerabilidad reside en un error al manejar ciertos datos malformados en el driver Symantec SymEvent driver.

Un usuario local con acceso autorizado podría causar una Denegación de servicio al sistema.

Solution



Actualización de software

Symantec
Norton Personal Firewall
Norton Internet Security
Norton AntiVirus
Norton SystemWorks
Update with Live Update
Symantec Client Security (SCS 1.x, 2.x 3.0) / Windows Me\98\95\NT 4.0 / SymEvent 11.6.8
Symantec Client Security (SCS 1.x, 2.x 3.0) / Windows 2003 (32-Bit) XP\2000 SymEvent / SymEvent 12.1.1
Symantec Client Security (SCS 1.x, 2.x 3.0) / Windows 2003 64 bit / SymEvent 64 bit
Symantec Client Security 3.1 / Windows 2003 (32-Bit) XP\2000 / SymEvent 12.1.1
Symantec Client Security 3.1 / Windows 2003 64 bit / SymEvent 64 bit
Symantec AntiVirus Corporate Edition SAVCE 8.x, 9.x, 10.0 / Windows Me\98\95\NT 4.0 / SymEvent 11.6.8
Symantec AntiVirus Corporate Edition SAVCE 8.x, 9.x, 10.0 / Windows 2003 (32-Bit) XP\2000 / SymEvent 12.1.1
Symantec AntiVirus Corporate Edition SAVCE 8.x, 9.x, 10.0 / Windows 2003 64 bit / 64 bit
Symantec AntiVirus Corporate Edition 10.1 / Windows 2003 XP\2000 / SymEvent 12.1.1
Symantec AntiVirus Corporate Edition 10.1 / Windows 2003 64 bit / SymEvent 64 bit
Symantec pcAnywhere 11.5 / Windows / SymEvent 11.6.8
Symantec Host IDS / Windows / SymEvent 11.6.8

Standar resources

Property Value
CVE CVE-2006-4855
BID 20051

Other resources

Symantec Security Advisory (SYM06-018)
http://securityresponse.symantec.com/avcenter/security/Content/2006.09.20a.html

Version history

Version Comments Date
1.0 Aviso emitido 2006-10-16
Ministerio de Defensa
CNI
CCN
CCN-CERT