CVE-2008-0309
N/A
N/A
Summary
Stack-based buffer overflow in Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed RAR file to the Internet Content Adaptation Protocol (ICAP) port (1344/tcp).
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.symantec.com/avcenter/security/Content/2008.02.27.html
- http://www.vupen.com/english/advisories/2008/0680
- http://www.securityfocus.com/bid/27913
- http://secunia.com/advisories/29140
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=667
- http://www.securitytracker.com/id?1019503
References
- http://www.symantec.com/avcenter/security/Content/2008.02.27.html
- http://www.vupen.com/english/advisories/2008/0680
- http://www.securityfocus.com/bid/27913
- http://secunia.com/advisories/29140
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=667
- http://www.securitytracker.com/id?1019503
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.