Symantec AutoFix Support Tool 'SYMADATA.DLL' ActiveX Control Remote Buffer Overflow Vulnerability
BID:28507
Info
Symantec AutoFix Support Tool 'SYMADATA.DLL' ActiveX Control Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 28507 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-0312 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 02 2008 12:00AM |
| Updated: | Apr 04 2008 06:59PM |
| Credit: | Peter Vreugdenhill |
| Vulnerable: |
Symantec Norton SystemWorks 2008 0 Symantec Norton SystemWorks 2007 0 Symantec Norton SystemWorks 2006 0 Symantec Norton Internet Security 2008 0 Symantec Norton Internet Security 2007 0 Symantec Norton Internet Security 2006 0 Symantec Norton Antivirus 2008 0 Symantec Norton Antivirus 2007 0 Symantec Norton AntiVirus 2006 Symantec Norton 360 1.0 |
| Not Vulnerable: | |
Discussion
Symantec AutoFix Support Tool 'SYMADATA.DLL' ActiveX Control Remote Buffer Overflow Vulnerability
Symantec AutoFix Support Tool ActiveX control is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input.
An attacker can exploit this issue to execute arbitrary code in the context of an application using the ActiveX control (typically Internet Explorer). Failed attacks will likely cause denial-of-service conditions.
NOTE: To exploit this issue, an attacker must entice an unsuspecting victim to to visit a malicious website masquerading as a trusted Symantec site.
This issue affects 'SYMADATA.DLL' 2.7.0.1 ActiveX control, which is part of the following Symantec products:
Norton 360 1.0
Norton AntiVirus 2006-2008
Norton Internet Security 2006-2008
Norton System Works 2006-2008
Symantec AutoFix Support Tool ActiveX control is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input.
An attacker can exploit this issue to execute arbitrary code in the context of an application using the ActiveX control (typically Internet Explorer). Failed attacks will likely cause denial-of-service conditions.
NOTE: To exploit this issue, an attacker must entice an unsuspecting victim to to visit a malicious website masquerading as a trusted Symantec site.
This issue affects 'SYMADATA.DLL' 2.7.0.1 ActiveX control, which is part of the following Symantec products:
Norton 360 1.0
Norton AntiVirus 2006-2008
Norton Internet Security 2006-2008
Norton System Works 2006-2008
Exploit / POC
Symantec AutoFix Support Tool 'SYMADATA.DLL' ActiveX Control Remote Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Symantec AutoFix Support Tool 'SYMADATA.DLL' ActiveX Control Remote Buffer Overflow Vulnerability
Solution:
Symantec has released an advisory and fixes. Users of affected packages can use the interactive LiveUpdate feature to obtain and apply fixes.
Please see the references for more information.
Symantec Norton SystemWorks 2007 0
Symantec Norton Antivirus 2008 0
Symantec Norton Antivirus 2007 0
Symantec Norton Internet Security 2008 0
Symantec Norton SystemWorks 2006 0
Symantec Norton AntiVirus 2006
Symantec Norton 360 1.0
Symantec Norton Internet Security 2007 0
Symantec Norton SystemWorks 2008 0
Symantec Norton Internet Security 2006 0
Solution:
Symantec has released an advisory and fixes. Users of affected packages can use the interactive LiveUpdate feature to obtain and apply fixes.
Please see the references for more information.
Symantec Norton SystemWorks 2007 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Antivirus 2008 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Antivirus 2007 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Internet Security 2008 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton SystemWorks 2006 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton AntiVirus 2006
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton 360 1.0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Internet Security 2007 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton SystemWorks 2008 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Internet Security 2006 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
References
Symantec AutoFix Support Tool 'SYMADATA.DLL' ActiveX Control Remote Buffer Overflow Vulnerability
References:
References:
- Microsoft Knowledge Base Article 240797 (Microsoft)
- Norton Product Page (Symantec)
- Symantec Home Page (Symantec)
- iDefense Security Advisory 04.02.08: Symantec Norton Internet Security 2008 Acti (iDefense Labs
) - SYM08-009 Symantec AutoFix Support Tool ActiveX Control Vulnerabilities (Symantec)
- Symantec Norton Internet Security 2008 ActiveX Control Buffer Overflow Vulnerabi (iDefense)