Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows remote attackers to cause a denial of service (memory consumption) via a malformed RAR file to the Internet Content Adaptation Protocol (ICAP) port (1344/tcp).
2008-02-28T20:44:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 7.1 (HIGH)
AV:N/AC:M/Au:N/C:N/I:N/A:C
8.6
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | symantec | scan_engine | ≤ 5.1.4.24 | Yes |
Application | symantec | symantec_antivirus_clearswift | ≤ 4.3.16.39 | Yes |
Application | symantec | symantec_antivirus_filtering_domino_mpe | ≤ 3.0.12 | Yes |
Application | symantec | symantec_antivirus_filtering_domino_mpe | ≤ 3.0.12 | Yes |
Application | symantec | symantec_antivirus_filtering_domino_mpe | ≤ 3.0.12 | Yes |
Application | symantec | symantec_antivirus_messaging | ≤ 4.3.16.39 | Yes |
Application | symantec | symantec_antivirus_microsoft_sharepoint | ≤ 4.3.16.39 | Yes |
Application | symantec | symantec_antivirus_ms_isa | ≤ 4.3.16.39 | Yes |
Application | symantec | symantec_antivirus_network_attached_storage | ≤ 4.3.16.39 | Yes |
Application | symantec | symantec_antivirus_scan_engine | ≤ 4.3.16.39 | Yes |
Application | symantec | symantec_antivirus_scan_engine_caching | ≤ 4.3.16.39 | Yes |
Application | symantec | symantec_mail_security_exchange | ≤ 4.6.5.12 | Yes |
Application | symantec | symantec_mail_security_exchange | ≤ 5.0.4.363 | Yes |