Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2005-0249


Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header.


Published

2005-02-08T05:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 7.5 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

6.4

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application symantec antivirus_scan_engine < 4.3.3 Yes
Application symantec brightmail_antispam 4.0 Yes
Application symantec brightmail_antispam 5.5 Yes
Application symantec client_security 1.0.1_build_8.01.434 Yes
Application symantec client_security 1.0.1_build_8.01.437 Yes
Application symantec client_security 1.0.1_build_8.01.446 Yes
Application symantec client_security 1.0.1_build_8.01.457 Yes
Application symantec client_security 1.0.1_build_8.01.460 Yes
Application symantec client_security 1.0.1_build_8.01.464 Yes
Application symantec client_security 1.0.1_build_8.01.471 Yes
Application symantec client_security 1.1.1_mr1_build_8.1.1.314a Yes
Application symantec client_security 1.1.1_mr2_build_8.1.1.319 Yes
Application symantec client_security 1.1.1_mr3_build_8.1.1.323 Yes
Application symantec client_security 1.1.1_mr4_build_8.1.1.329 Yes
Application symantec client_security 1.1.1_mr5_build_8.1.1.336 Yes
Application symantec gateway_security 1.0 Yes
Application symantec gateway_security 2.0 Yes
Application symantec gateway_security 2.0.1 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.1 Yes
Application symantec mail_security 4.1 Yes
Application symantec mail_security 4.1 Yes
Application symantec mail_security 4.5_build_719 Yes
Application symantec norton_antivirus 2.18_build_83 Yes
Application symantec norton_antivirus 8.1.1.319 Yes
Application symantec norton_antivirus 8.1.1.323 Yes
Application symantec norton_antivirus 8.1.1.329 Yes
Application symantec norton_antivirus 8.1.1_build8.1.1.314a Yes
Application symantec norton_antivirus 8.01.434 Yes
Application symantec norton_antivirus 8.01.437 Yes
Application symantec norton_antivirus 8.01.446 Yes
Application symantec norton_antivirus 8.01.457 Yes
Application symantec norton_antivirus 8.01.460 Yes
Application symantec norton_antivirus 8.01.464 Yes
Application symantec norton_antivirus 8.01.471 Yes
Application symantec norton_antivirus 9.0 Yes
Application symantec norton_antivirus 2004 Yes
Application symantec norton_internet_security 2004 Yes
Application symantec norton_system_works 2004 Yes
Application symantec sav_filter_domino_nt_ports build3.0.5 Yes
Application symantec sav_filter_domino_nt_ports build3.0.5 Yes
Application symantec sav_filter_for_domino_nt 3.1.1 Yes
Application symantec web_security 3.01.59 Yes
Application symantec web_security 3.01.60 Yes
Application symantec web_security 3.01.61 Yes
Application symantec web_security 3.01.62 Yes
Application symantec web_security 3.01.63 Yes
Application symantec web_security 3.01.67 Yes
Application symantec web_security 3.01.68 Yes

References