PT-2010-4702 · Symantec+1 · Symantec Antivirus Corporate Edition+2

Publicado

2010-12-22

·

Atualizado

2018-10-30

·

CVE-2010-3268

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Symantec Antivirus Corporate Edition version 10.1.4.4010 Symantec Endpoint Protection versions prior to 11.x
Description The issue is related to the GetStringAMSHandler function in the Intel Alert Handler service, which does not properly validate the CommandLine field of an AMS request. This allows remote attackers to cause a denial of service, resulting in an application crash, via a crafted request.
Recommendations For Symantec Antivirus Corporate Edition version 10.1.4.4010, consider updating to a newer version. For Symantec Endpoint Protection versions prior to 11.x, update to version 11.x or later. As a temporary workaround, consider restricting access to the Intel Alert Handler service to minimize the risk of exploitation.

Exploit

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-3268

Produtos afetados

Intel Alert Handler
Symantec Antivirus Corporate Edition
Symantec Endpoint Protection