PT-2004-1575 · Symantec · Norton Internet Security+5

Published

2004-05-20

·

Updated

2017-07-11

·

CVE-2004-0445

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Symantec Norton Internet Security versions 2002 through 2004 Symantec Norton Professional versions 2002 through 2004 Symantec Norton Personal Firewall versions 2002 through 2004 Symantec Norton AntiSpam version 2004 Symantec Client Firewall versions 5.01 and 5.1.1 Symantec Client Security versions 1.0 through 2.0
Description The issue allows remote attackers to cause a denial of service by consuming CPU resources due to an infinite loop. This is achieved via a DNS response with a compressed name pointer that points to itself.
Recommendations For Symantec Norton Internet Security versions 2002 through 2004, update to a version that fixes this issue. For Symantec Norton Professional versions 2002 through 2004, update to a version that fixes this issue. For Symantec Norton Personal Firewall versions 2002 through 2004, update to a version that fixes this issue. For Symantec Norton AntiSpam version 2004, update to a version that fixes this issue. For Symantec Client Firewall versions 5.01 and 5.1.1, update to a version that fixes this issue. For Symantec Client Security versions 1.0 through 2.0, update to a version that fixes this issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0445

Affected Products

Client Firewall
Client Security
Norton Antispam
Norton Internet Security
Norton Personal Firewall
Norton Professional