CVE Vulnerabilities

CVE-2005-0249

Published: Feb 08, 2005 | Modified: Sep 20, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header.

Affected Software

Name Vendor Start Version End Version
Antivirus_scan_engine Symantec * 4.3.3 (excluding)
Brightmail_antispam Symantec 4.0 (including) 4.0 (including)
Brightmail_antispam Symantec 5.5 (including) 5.5 (including)
Client_security Symantec 1.0.1_build_8.01.434-mr3 (including) 1.0.1_build_8.01.434-mr3 (including)
Client_security Symantec 1.0.1_build_8.01.437 (including) 1.0.1_build_8.01.437 (including)
Client_security Symantec 1.0.1_build_8.01.446-mr4 (including) 1.0.1_build_8.01.446-mr4 (including)
Client_security Symantec 1.0.1_build_8.01.457-mr5 (including) 1.0.1_build_8.01.457-mr5 (including)
Client_security Symantec 1.0.1_build_8.01.460-mr6 (including) 1.0.1_build_8.01.460-mr6 (including)
Client_security Symantec 1.0.1_build_8.01.464-mr7 (including) 1.0.1_build_8.01.464-mr7 (including)
Client_security Symantec 1.0.1_build_8.01.471-mr8 (including) 1.0.1_build_8.01.471-mr8 (including)
Client_security Symantec 1.1.1_mr1_build_8.1.1.314a (including) 1.1.1_mr1_build_8.1.1.314a (including)
Client_security Symantec 1.1.1_mr2_build_8.1.1.319 (including) 1.1.1_mr2_build_8.1.1.319 (including)
Client_security Symantec 1.1.1_mr3_build_8.1.1.323 (including) 1.1.1_mr3_build_8.1.1.323 (including)
Client_security Symantec 1.1.1_mr4_build_8.1.1.329 (including) 1.1.1_mr4_build_8.1.1.329 (including)
Client_security Symantec 1.1.1_mr5_build_8.1.1.336 (including) 1.1.1_mr5_build_8.1.1.336 (including)
Gateway_security Symantec 1.0 (including) 1.0 (including)
Gateway_security Symantec 2.0 (including) 2.0 (including)
Gateway_security Symantec 2.0.1 (including) 2.0.1 (including)
Mail_security Symantec 4.0 (including) 4.0 (including)
Mail_security Symantec 4.1-build_458 (including) 4.1-build_458 (including)
Mail_security Symantec 4.1-build_459 (including) 4.1-build_459 (including)
Mail_security Symantec 4.1-build_461 (including) 4.1-build_461 (including)
Mail_security Symantec 4.5_build_719 (including) 4.5_build_719 (including)
Norton_antivirus Symantec 2.18_build_83 (including) 2.18_build_83 (including)
Norton_antivirus Symantec 8.1.1.319 (including) 8.1.1.319 (including)
Norton_antivirus Symantec 8.1.1.323 (including) 8.1.1.323 (including)
Norton_antivirus Symantec 8.1.1.329 (including) 8.1.1.329 (including)
Norton_antivirus Symantec 8.1.1_build8.1.1.314a (including) 8.1.1_build8.1.1.314a (including)
Norton_antivirus Symantec 8.01.434 (including) 8.01.434 (including)
Norton_antivirus Symantec 8.01.437 (including) 8.01.437 (including)
Norton_antivirus Symantec 8.01.446 (including) 8.01.446 (including)
Norton_antivirus Symantec 8.01.457 (including) 8.01.457 (including)
Norton_antivirus Symantec 8.01.460 (including) 8.01.460 (including)
Norton_antivirus Symantec 8.01.464 (including) 8.01.464 (including)
Norton_antivirus Symantec 8.01.471 (including) 8.01.471 (including)
Norton_antivirus Symantec 9.0 (including) 9.0 (including)
Norton_antivirus Symantec 2004 (including) 2004 (including)
Norton_internet_security Symantec 2004 (including) 2004 (including)
Norton_system_works Symantec 2004 (including) 2004 (including)
Sav_filter_domino_nt_ports Symantec build3.0.5 (including) build3.0.5 (including)
Sav_filter_for_domino_nt Symantec 3.1.1 (including) 3.1.1 (including)
Web_security Symantec 3.01.59 (including) 3.01.59 (including)
Web_security Symantec 3.01.60 (including) 3.01.60 (including)
Web_security Symantec 3.01.61 (including) 3.01.61 (including)
Web_security Symantec 3.01.62 (including) 3.01.62 (including)
Web_security Symantec 3.01.63 (including) 3.01.63 (including)
Web_security Symantec 3.01.67 (including) 3.01.67 (including)
Web_security Symantec 3.01.68 (including) 3.01.68 (including)

References