Ads by TechWords

See your link here
Receive the latest technology news and information.
Security
Virus and Vulnerability Roundup
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
Cloud Computing
View all newsletters




Privacy Policy
 

Symantec hit by large-scale flaw

Server, gateway and client products at risk

February 9, 2005 12:00 PM ET

TechWorld.com - Symantec Corp. has issued patches to fix a "high impact" security hole that affects almost every product it sells.
According to security rival ISS, which unearthed the vulnerability, the problem lies with the DEC2EXE module in the Symantec Anti-Virus Library, a part of the virus detection engine that makes it possible to detect malware inside executable files compressed using the freeware UPX (Ultimate Packer for eXecuteables) format.
The vulnerable module fails to properly check within files when looking for viruses, a flaw that could allow an attacker to cause a software "heap overflow" using a specially crafted UPX file. ISS stated that this could, in turn, give an attacker unauthorized access to a network or its client PCs, as well as confidential information.
The company has posted an extensive list of affected products on its Web site, which includes its most popular programs for PC, Apple Mac, Linux and AS400 platforms, and antispam software from Brightmail, a company acquired last year. Those versions not affected are mainly older, non-current versions of products or those updated most recently.
Symantec emphasized that it had started removing the DEC2EXE module from its software before the issue came to light.
"Prior to ISS contacting Symantec with this vulnerability, Symantec had already removed the DEC2EXE engine from the scan engine upgrades implemented in the majority of Symantec products.
Also, Symantec had planned the DEC2EXE engine removal from all affected Symantec product versions during upcoming maintenance updates," it stated on the company Web site.


Reprinted with permission from

For more enterprise technology news from the U.K., please visit TechWorld.com. Copyright 2006 IDG, all rights reserved.

Jump to comments

Viruses

Additional Resources

Xerox
By using solid ink technology only from Xerox, you could save up to 65% by printing color for the cost of black and white. Enter for a chance to WIN a PhaserTM 8860 network color printer!
Microsoft
Save time and mitigate security risk. Deploy it now.
Sybase
In this white paper, IDC analyzes the role of next-generation mobile enterprise platforms as organizations seek a more strategic deployment of mobile solutions.

Learn the important issues you must consider before starting your next mobility initiative. Get your mobility white paper from IDC now, compliments of Sybase.