AplusWebMaster
Topic Starter
FYI…
- http://secunia.com/advisories/17049/
"Release Date: 2005-10-05
Critical: Moderately critical
Impact: DoS. System access
Where: From local network
Solution Status: Vendor Patch
Software: Symantec AntiVirus Scan Engine 4.x…
CVE reference: CAN-2005-2758
Description:
A vulnerability has been reported in Symantec AntiVirus Scan Engine, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system…
Successful exploitation allows arbitrary code execution with SYSTEM privileges, but requires the ability to send HTTP requests to port 8004/tcp…
Solution:
Apply security update.
- http://www.sarc.com/avcenter/security/Cont…tml#savse4-3-12 …"
Revision History
10/5/2005 – updated Symantec Scan Engine-based product names to reflect current branding.
Risk Impact - HIGH
Remote Access - Yes
Also:
- http://securitytracker.com/alerts/2005/Oct/1015001.html

- http://secunia.com/advisories/17049/
"Release Date: 2005-10-05
Critical: Moderately critical
Impact: DoS. System access
Where: From local network
Solution Status: Vendor Patch
Software: Symantec AntiVirus Scan Engine 4.x…
CVE reference: CAN-2005-2758
Description:
A vulnerability has been reported in Symantec AntiVirus Scan Engine, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system…
Successful exploitation allows arbitrary code execution with SYSTEM privileges, but requires the ability to send HTTP requests to port 8004/tcp…
Solution:
Apply security update.
- http://www.sarc.com/avcenter/security/Cont…tml#savse4-3-12 …"
Revision History
10/5/2005 – updated Symantec Scan Engine-based product names to reflect current branding.
Risk Impact - HIGH
Remote Access - Yes
Also:
- http://securitytracker.com/alerts/2005/Oct/1015001.html