PT-2002-2497 · Symantec · Symantec Norton Antivirus

Published

2002-12-31

·

Updated

2024-08-08

·

CVE-2002-1775

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Symantec Norton AntiVirus (NAV) version 2002
Description The issue allows remote attackers to bypass the initial virus scan and cause the software to prematurely stop scanning by using a non-RFC compliant MIME header. The vendor has disputed this issue, acknowledging that the initial scan is bypassed, but the AutoProtect feature would detect the virus before it is executed.
Recommendations For Symantec Norton AntiVirus (NAV) version 2002, consider configuring the AutoProtect feature to enhance detection capabilities, as it may detect the virus before execution, despite the initial scan being bypassed. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2002-1775

Affected Products

Symantec Norton Antivirus