PT-2010-4702 · Symantec+1 · Symantec Antivirus Corporate Edition+2

Published

2010-12-22

·

Updated

2018-10-30

·

CVE-2010-3268

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Symantec Antivirus Corporate Edition version 10.1.4.4010 Symantec Endpoint Protection versions prior to 11.x
Description The issue is related to the GetStringAMSHandler function in the Intel Alert Handler service, which does not properly validate the CommandLine field of an AMS request. This allows remote attackers to cause a denial of service, resulting in an application crash, via a crafted request.
Recommendations For Symantec Antivirus Corporate Edition version 10.1.4.4010, consider updating to a newer version. For Symantec Endpoint Protection versions prior to 11.x, update to version 11.x or later. As a temporary workaround, consider restricting access to the Intel Alert Handler service to minimize the risk of exploitation.

Exploit

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-3268

Affected Products

Intel Alert Handler
Symantec Antivirus Corporate Edition
Symantec Endpoint Protection