Symantec AutoFix Tool ActiveX Control Remote Share 'launchProcess()' Insecure Method Vulnerability
BID:28509
Info
Symantec AutoFix Tool ActiveX Control Remote Share 'launchProcess()' Insecure Method Vulnerability
| Bugtraq ID: | 28509 |
| Class: | Design Error |
| CVE: |
CVE-2008-0313 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 02 2008 12:00AM |
| Updated: | Apr 04 2008 06:59PM |
| Credit: | An anonymous researcher, working with iDefense, discovered this issue. |
| Vulnerable: |
Symantec Norton SystemWorks 2008 0 Symantec Norton SystemWorks 2007 0 Symantec Norton SystemWorks 2006 0 Symantec Norton Internet Security 2008 0 Symantec Norton Internet Security 2007 0 Symantec Norton Internet Security 2006 0 Symantec Norton Antivirus 2008 0 Symantec Norton Antivirus 2007 0 Symantec Norton AntiVirus 2006 Symantec Norton 360 1.0 |
| Not Vulnerable: | |
Discussion
Symantec AutoFix Tool ActiveX Control Remote Share 'launchProcess()' Insecure Method Vulnerability
An ActiveX control in the Symantec AutoFix Tool is prone to a vulnerability due to an insecure method.
Attackers can leverage this issue to load an arbitrary file onto a victim's computer and then execute it with the privileges of the application running the control (typically Internet Explorer). This issue is exploitable only when a victim's computer is configured to allow remote connections to WebDav or SMB shares.
Successful exploits will compromise affected computers.
This issue affects the 'SYMADATA.DLL' 2.7.0.1 ActiveX control, which is part of the following Symantec products:
Norton 360 1.0
Norton AntiVirus 2006-2008
Norton Internet Security 2006-2008
Norton System Works 2006-2008
An ActiveX control in the Symantec AutoFix Tool is prone to a vulnerability due to an insecure method.
Attackers can leverage this issue to load an arbitrary file onto a victim's computer and then execute it with the privileges of the application running the control (typically Internet Explorer). This issue is exploitable only when a victim's computer is configured to allow remote connections to WebDav or SMB shares.
Successful exploits will compromise affected computers.
This issue affects the 'SYMADATA.DLL' 2.7.0.1 ActiveX control, which is part of the following Symantec products:
Norton 360 1.0
Norton AntiVirus 2006-2008
Norton Internet Security 2006-2008
Norton System Works 2006-2008
Exploit / POC
Symantec AutoFix Tool ActiveX Control Remote Share 'launchProcess()' Insecure Method Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Symantec AutoFix Tool ActiveX Control Remote Share 'launchProcess()' Insecure Method Vulnerability
Solution:
Symantec has released an advisory and fixes. Users of affected packages can use the interactive LiveUpdate feature to obtain and apply fixes.
Please see the references for more information.
Symantec Norton SystemWorks 2007 0
Symantec Norton Antivirus 2008 0
Symantec Norton Antivirus 2007 0
Symantec Norton Internet Security 2008 0
Symantec Norton SystemWorks 2006 0
Symantec Norton AntiVirus 2006
Symantec Norton 360 1.0
Symantec Norton Internet Security 2007 0
Symantec Norton SystemWorks 2008 0
Symantec Norton Internet Security 2006 0
Solution:
Symantec has released an advisory and fixes. Users of affected packages can use the interactive LiveUpdate feature to obtain and apply fixes.
Please see the references for more information.
Symantec Norton SystemWorks 2007 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Antivirus 2008 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Antivirus 2007 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Internet Security 2008 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton SystemWorks 2006 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton AntiVirus 2006
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton 360 1.0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Internet Security 2007 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton SystemWorks 2008 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
Symantec Norton Internet Security 2006 0
-
Symantec AutoFix Tool
https://www-secure.symantec.com/techsupp/asa/install.jsp
References
Symantec AutoFix Tool ActiveX Control Remote Share 'launchProcess()' Insecure Method Vulnerability
References:
References:
- Microsoft Knowledge Base Article 240797 (Microsoft)
- Norton Product Page (Symantec)
- iDefense Security Advisory 04.02.08: Symantec Internet Security 2008 ActiveDataI (iDefense Labs
) - SYM08-009 Symantec AutoFix Support Tool ActiveX Control Vulnerabilities (Symantec)
- Symantec Internet Security 2008 ActiveDataInfo.LaunchProcess Design Error Vulner (iDefense)