The Disk Mount scanner in Symantec AntiVirus for Macintosh 9.x and 10.x, Norton AntiVirus for Macintosh 10.0 and 10.1, and Norton Internet Security for Macintosh 3.x, uses a directory with weak permissions (group writable), which allows local admin users to gain root privileges by replacing unspecified files, which are executed when a user with physical access inserts a disk and the Show Progress During Mount Scans option is enabled.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Norton_antivirus | Symantec | 9.0 (including) | 9.0 (including) |
Norton_antivirus | Symantec | 9.0.1 (including) | 9.0.1 (including) |
Norton_antivirus | Symantec | 9.0.2 (including) | 9.0.2 (including) |
Norton_antivirus | Symantec | 9.0.3 (including) | 9.0.3 (including) |
Norton_antivirus | Symantec | 10.0 (including) | 10.0 (including) |
Norton_antivirus | Symantec | 10.1 (including) | 10.1 (including) |
Norton_internet_security | Symantec | 3.0 (including) | 3.0 (including) |