int(4537)

Vulnerability Bulletins


Denegación de servicio en Symantec pcAnywhere

Vulnerability classification

Property Value
Confidence level Oficial
Impact Denegación de Servicio
Dificulty Experto
Required attacker level Acceso remoto con cuenta

System information

Property Value
Affected manufacturer Comercial Software
Affected software Symantec pcAnywhere < 12.5 SP1

Description

Se ha descubierto una vulnerabilidad en Symantec pcAnywhere 12.

Un atacante local podría acceder y modificar regiones arbitrarias de memoria y causar una denegación de servicio medianteespecificadores de cadena de formato en el nombre de la ruta de fichero de un fichero de control.

Solution



Actualización de software

Symantec
Symantec pcAnywhere 12.0, 12.1, 12.5 / actualizar 12.5 SP1
http://kb.altiris.com/

Standar resources

Property Value
CVE CVE-2009-0538
BID 33845

Other resources

Symantec Security Advisory (SYM09-003)
http://securityresponse.symantec.com/avcenter/security/Content/2009.03.17.html

Version history

Version Comments Date
1.0 Aviso emitido 2009-03-20