Google Community
Latest Forums Rules Resources
Custom Search

Go Back   Google Community > The Community > General Discussion

GoogleCommunity Sponsor

Reply
 
LinkBack Thread Tools Display Modes
Old 02-10-2005, 04:10 AM   #1 (permalink)
Google Guru
 
Join Date: Jan 2005
Location: Deep in the heart.
Posts: 2,443
Thanks: 0
Thanked 3 Times in 3 Posts
geekerati is an unknown quantity at this point
Norton Antivirus Users heads up!

Manually run Live-update, hey, thats an oxymoron!

Symantec flaw leaves opening for viruses
February 9, 2005, 1:47 PM



Quote:
Symantec has issued a patch for a flaw in its scanning software that could cause a virus to execute, rather than catch it.

The vulnerability affects an antivirus library used by the majority of Symantec's antivirus and antispam products, including Norton SystemWorks 2004 and Symantec Mail Security for Exchange, the security provider said on Tuesday.

The software is aimed at a range of systems, from consumer desktops to large corporate mail servers, meaning the flaw could be used to take control of key corporate systems or to install programs to grab people's identity data.



"The impact of this vulnerability is exaggerated by the fact that many e-mail and other traffic routing gateways make use of file-scanning utilities that make use of the vulnerable library," Symantec said in an advisory. "This could allow an attacker to potentially exploit high-profile systems used to filter malicious data, and potentially allow further compromise of targeted internal networks."

Computers are at risk if they run an unpatched version of a Symantec product that scans files to detect malicious code and if they use the Microsoft Windows, Mac OS X, Linux, Solaris and AIX operating systems, Symantec said.

But the flaw does not affect the latest versions of some of the products, such as Norton Antivirus 2005, the company said.

"Symantec strongly recommends that customers ensure their products are up-to-date to protect against this vulnerability,"the company said in a statement. "To date, Symantec has not had any reports of related exploits of this vulnerability."

Security information company Secunia, which rates the seriousness of software vulnerabilities, gave the Symantec flaw its second-highest threat grade, "highly critical."

The problem exists in how the scanning code handles a compression format known as the Ultimate Packer for Executables (UPX). An attacker could create a virus designed to exploit the UPX flaw and send it to victims through e-mail or host it on a Web site. An unpatched Symantec scanner checking incoming e-mail or the Web pages that users browse would run the program instead of catching the virus.

"The vulnerability can be triggered by an unauthorized remote attacker, without user interaction, by sending an e-mail containing a crafted UPX file to the target," Internet Security Systems, the company that found the flaw, stated in an advisory on Tuesday. The company said it notified Symantec of the issue when it found it.
ZDNet
geekerati is offline   Reply With Quote
 
Sponsored Links
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



Similar Threads
Thread Thread Starter Forum Replies Last Post
Which antivirus do you use? nilesh.3892 General Computer Forum 27 06-13-2007 08:20 AM
Gmail issue with Norton Antivirus? ccpxysvc.exe hockey2112 Gmail Forum 2 10-16-2006 08:20 PM
Google will provide free antivirus software sohigh Other Google Features 4 10-15-2005 01:08 PM
Rare real ant with three heads! darrenstraight Chit Chat 17 08-03-2005 02:42 AM
NOD antivirus slimken General Computer Forum 16 02-10-2005 07:21 AM


All times are GMT -8. The time now is 06:33 PM.


Powered by vBulletin®
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.1.0
© 2004–2007 Google Community