CVE Vulnerabilities

CVE-2005-0249

Published: Feb 08, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header.

Affected Software

NameVendorStart VersionEnd Version
Antivirus_scan_engineSymantec*4.3.3 (excluding)
Brightmail_antispamSymantec4.0 (including)4.0 (including)
Brightmail_antispamSymantec5.5 (including)5.5 (including)
Client_securitySymantec1.0.1_build_8.01.434-mr3 (including)1.0.1_build_8.01.434-mr3 (including)
Client_securitySymantec1.0.1_build_8.01.437 (including)1.0.1_build_8.01.437 (including)
Client_securitySymantec1.0.1_build_8.01.446-mr4 (including)1.0.1_build_8.01.446-mr4 (including)
Client_securitySymantec1.0.1_build_8.01.457-mr5 (including)1.0.1_build_8.01.457-mr5 (including)
Client_securitySymantec1.0.1_build_8.01.460-mr6 (including)1.0.1_build_8.01.460-mr6 (including)
Client_securitySymantec1.0.1_build_8.01.464-mr7 (including)1.0.1_build_8.01.464-mr7 (including)
Client_securitySymantec1.0.1_build_8.01.471-mr8 (including)1.0.1_build_8.01.471-mr8 (including)
Client_securitySymantec1.1.1_mr1_build_8.1.1.314a (including)1.1.1_mr1_build_8.1.1.314a (including)
Client_securitySymantec1.1.1_mr2_build_8.1.1.319 (including)1.1.1_mr2_build_8.1.1.319 (including)
Client_securitySymantec1.1.1_mr3_build_8.1.1.323 (including)1.1.1_mr3_build_8.1.1.323 (including)
Client_securitySymantec1.1.1_mr4_build_8.1.1.329 (including)1.1.1_mr4_build_8.1.1.329 (including)
Client_securitySymantec1.1.1_mr5_build_8.1.1.336 (including)1.1.1_mr5_build_8.1.1.336 (including)
Gateway_securitySymantec1.0 (including)1.0 (including)
Gateway_securitySymantec2.0 (including)2.0 (including)
Gateway_securitySymantec2.0.1 (including)2.0.1 (including)
Mail_securitySymantec4.0 (including)4.0 (including)
Mail_securitySymantec4.1-build_458 (including)4.1-build_458 (including)
Mail_securitySymantec4.1-build_459 (including)4.1-build_459 (including)
Mail_securitySymantec4.1-build_461 (including)4.1-build_461 (including)
Mail_securitySymantec4.5_build_719 (including)4.5_build_719 (including)
Norton_antivirusSymantec2.18_build_83 (including)2.18_build_83 (including)
Norton_antivirusSymantec8.1.1.319 (including)8.1.1.319 (including)
Norton_antivirusSymantec8.1.1.323 (including)8.1.1.323 (including)
Norton_antivirusSymantec8.1.1.329 (including)8.1.1.329 (including)
Norton_antivirusSymantec8.1.1_build8.1.1.314a (including)8.1.1_build8.1.1.314a (including)
Norton_antivirusSymantec8.01.434 (including)8.01.434 (including)
Norton_antivirusSymantec8.01.437 (including)8.01.437 (including)
Norton_antivirusSymantec8.01.446 (including)8.01.446 (including)
Norton_antivirusSymantec8.01.457 (including)8.01.457 (including)
Norton_antivirusSymantec8.01.460 (including)8.01.460 (including)
Norton_antivirusSymantec8.01.464 (including)8.01.464 (including)
Norton_antivirusSymantec8.01.471 (including)8.01.471 (including)
Norton_antivirusSymantec9.0 (including)9.0 (including)
Norton_antivirusSymantec2004 (including)2004 (including)
Norton_internet_securitySymantec2004 (including)2004 (including)
Norton_system_worksSymantec2004 (including)2004 (including)
Sav_filter_domino_nt_portsSymantecbuild3.0.5 (including)build3.0.5 (including)
Sav_filter_for_domino_ntSymantec3.1.1 (including)3.1.1 (including)
Web_securitySymantec3.01.59 (including)3.01.59 (including)
Web_securitySymantec3.01.60 (including)3.01.60 (including)
Web_securitySymantec3.01.61 (including)3.01.61 (including)
Web_securitySymantec3.01.62 (including)3.01.62 (including)
Web_securitySymantec3.01.63 (including)3.01.63 (including)
Web_securitySymantec3.01.67 (including)3.01.67 (including)
Web_securitySymantec3.01.68 (including)3.01.68 (including)

References