Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header.
2005-02-08T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | symantec | antivirus_scan_engine | < 4.3.3 | Yes |
Application | symantec | brightmail_antispam | 4.0 | Yes |
Application | symantec | brightmail_antispam | 5.5 | Yes |
Application | symantec | client_security | 1.0.1_build_8.01.434 | Yes |
Application | symantec | client_security | 1.0.1_build_8.01.437 | Yes |
Application | symantec | client_security | 1.0.1_build_8.01.446 | Yes |
Application | symantec | client_security | 1.0.1_build_8.01.457 | Yes |
Application | symantec | client_security | 1.0.1_build_8.01.460 | Yes |
Application | symantec | client_security | 1.0.1_build_8.01.464 | Yes |
Application | symantec | client_security | 1.0.1_build_8.01.471 | Yes |
Application | symantec | client_security | 1.1.1_mr1_build_8.1.1.314a | Yes |
Application | symantec | client_security | 1.1.1_mr2_build_8.1.1.319 | Yes |
Application | symantec | client_security | 1.1.1_mr3_build_8.1.1.323 | Yes |
Application | symantec | client_security | 1.1.1_mr4_build_8.1.1.329 | Yes |
Application | symantec | client_security | 1.1.1_mr5_build_8.1.1.336 | Yes |
Application | symantec | gateway_security | 1.0 | Yes |
Application | symantec | gateway_security | 2.0 | Yes |
Application | symantec | gateway_security | 2.0.1 | Yes |
Application | symantec | mail_security | 4.0 | Yes |
Application | symantec | mail_security | 4.1 | Yes |
Application | symantec | mail_security | 4.1 | Yes |
Application | symantec | mail_security | 4.1 | Yes |
Application | symantec | mail_security | 4.5_build_719 | Yes |
Application | symantec | norton_antivirus | 2.18_build_83 | Yes |
Application | symantec | norton_antivirus | 8.1.1.319 | Yes |
Application | symantec | norton_antivirus | 8.1.1.323 | Yes |
Application | symantec | norton_antivirus | 8.1.1.329 | Yes |
Application | symantec | norton_antivirus | 8.1.1_build8.1.1.314a | Yes |
Application | symantec | norton_antivirus | 8.01.434 | Yes |
Application | symantec | norton_antivirus | 8.01.437 | Yes |
Application | symantec | norton_antivirus | 8.01.446 | Yes |
Application | symantec | norton_antivirus | 8.01.457 | Yes |
Application | symantec | norton_antivirus | 8.01.460 | Yes |
Application | symantec | norton_antivirus | 8.01.464 | Yes |
Application | symantec | norton_antivirus | 8.01.471 | Yes |
Application | symantec | norton_antivirus | 9.0 | Yes |
Application | symantec | norton_antivirus | 2004 | Yes |
Application | symantec | norton_internet_security | 2004 | Yes |
Application | symantec | norton_system_works | 2004 | Yes |
Application | symantec | sav_filter_domino_nt_ports | build3.0.5 | Yes |
Application | symantec | sav_filter_domino_nt_ports | build3.0.5 | Yes |
Application | symantec | sav_filter_for_domino_nt | 3.1.1 | Yes |
Application | symantec | web_security | 3.01.59 | Yes |
Application | symantec | web_security | 3.01.60 | Yes |
Application | symantec | web_security | 3.01.61 | Yes |
Application | symantec | web_security | 3.01.62 | Yes |
Application | symantec | web_security | 3.01.63 | Yes |
Application | symantec | web_security | 3.01.67 | Yes |
Application | symantec | web_security | 3.01.68 | Yes |