Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

fstec логотип

BDU:2016-01701

Опубликовано: 01 июл. 2016
Источник: fstec
CVSS2: 9.3
EPSS Средний

Описание

Уязвимость ядра AntiVirus Decomposer средств антивирусной защиты компании Symantec вызвана целочисленным переполнением или переполнением буфера. Эксплуатация уязвимости может позволить нарушителю, действующему удалённо, вызвать отказ в обслуживании (повреждение памяти) или выполнить произвольный код при помощи специально сформированного файла CAB

Вендор

Gen Digital
Broadcom Inc.

Наименование ПО

Norton 360
Broadcom Message Gateway
Broadcom End-User Security: Advanced Threat Protection
Symantec Protection Engine (SPE)
Broadcom Symantec Mail Security for Domino
Norton Power Eraser
Symantec Endpoint Protection
Broadcom Symantec Protection for SharePoint Servers
Broadcom Symantec Mail Security for Microsoft Exchange
Norton AntiVirus
Symantec Content Security API (CSAPI)
Broadcom Data Center Security: Server
Broadcom Message Gateway for Service Providers
Norton Bootable Recovery Tool

Версия ПО

- (Norton 360)
до 13.0.2 (Norton 360)
до 10.6.1-4 (Broadcom Message Gateway)
до 2.0.3 включительно (Broadcom End-User Security: Advanced Threat Protection)
до 7.0.5 HF01 (Symantec Protection Engine (SPE))
от 7.5.0 до 7.5.3 HF03 (Symantec Protection Engine (SPE))
от 7.5.4 до 7.5.4 HF01 (Symantec Protection Engine (SPE))
от 7.8.0 до 7.8.0 HF01 (Symantec Protection Engine (SPE))
до 8.0.9 HF1.1 (Broadcom Symantec Mail Security for Domino)
от 8.1.0 до 8.1.3 HF1.2 (Broadcom Symantec Mail Security for Domino)
до 5.1 (Norton Power Eraser)
до 12.1 RU6 MP5 (Symantec Endpoint Protection)
от 6.0.3 до 6.0.5 HF 1.5 (Broadcom Symantec Protection for SharePoint Servers)
от 6.0.6 до 6.0.6 HF 1.6 (Broadcom Symantec Protection for SharePoint Servers)
до 7.0_3966002 HF1.1 (Broadcom Symantec Mail Security for Microsoft Exchange)
от 7.5.0 до 7.5_3966008 VHF1.2 (Broadcom Symantec Mail Security for Microsoft Exchange)
до NGC 22.7 (Norton AntiVirus)
до 10.0.4 включительно (Symantec Content Security API (CSAPI))
от 6.0 до 6.6 MP1 (Broadcom Data Center Security: Server)
от 10.5 до 10.5 patch 254 (Broadcom Message Gateway for Service Providers)
от 10.6 до 10.6 patch 253 (Broadcom Message Gateway for Service Providers)
до 2016.1 (Norton Bootable Recovery Tool)
до NGC 22.7 (Norton 360)

Тип ПО

Программное средство защиты
Средство защиты

Операционные системы и аппаратные платформы

Apple Inc. MacOS 10
Apple Inc. MacOS .
Apple Inc. MacOS .
Microsoft Corp Windows -
Microsoft Corp Windows -
Apple Inc. MacOS 10
Google Inc Android .
Google Inc Android .
Apple Inc. iOS .

Уровень опасности уязвимости

Высокий уровень опасности (базовая оценка CVSS 2.0 составляет 9,3)

Возможные меры по устранению уязвимости

Информация об устранении уязвимости доступна по адресу: https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20160628_00

Статус уязвимости

Подтверждена производителем

Наличие эксплойта

Данные уточняются

Информация об устранении

Уязвимость устранена

Идентификаторы других систем описаний уязвимостей

EPSS

Процентиль: 99%
0.53402
Средний

9.3 Critical

CVSS2

Связанные уязвимости

CVSS3: 7.8
nvd
около 10 лет назад

The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway; Symantec Endpoint Protection (SEP) before 12.1 RU6 MP5; Symantec Endpoint Protection (SEP) for Mac; Symantec Endpoint Protection (SEP) for Linux before 12.1 RU6 MP5; Symantec Protection Engine (SPE) before 7.0.5 HF01, 7.5.x before 7.5.3 HF03, 7.5.4 before HF01, and 7.8.0 before HF01; Symantec Protection for SharePoint Servers (SPSS) 6.0.3 through 6.0.5 before 6.0.5 HF 1.5 and 6.0.6 before HF 1.6; Symantec Mail Security for Microsoft Exchange (SMSMSE) before 7.0_3966002 HF1.1 and 7.5.x before 7.5_3966008 VHF1.2; Symantec Mail Security for Domino (SMSDOM) before 8.0.9 HF1.1 and 8.1.x before 8.1.3 HF1.2; CSAPI before 10.0.4 HF01; Symantec Message Gateway (SMG) before 10.6.1-4; Symantec Message Gateway for Service Providers (SMG-SP) 10.5 before patch 254 and 10.6 before patch 253; Norton AntiVirus, Norton Security, Norton Int

CVSS3: 7.8
github
около 4 лет назад

The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway; Symantec Endpoint Protection (SEP) before 12.1 RU6 MP5; Symantec Endpoint Protection (SEP) for Mac; Symantec Endpoint Protection (SEP) for Linux before 12.1 RU6 MP5; Symantec Protection Engine (SPE) before 7.0.5 HF01, 7.5.x before 7.5.3 HF03, 7.5.4 before HF01, and 7.8.0 before HF01; Symantec Protection for SharePoint Servers (SPSS) 6.0.3 through 6.0.5 before 6.0.5 HF 1.5 and 6.0.6 before HF 1.6; Symantec Mail Security for Microsoft Exchange (SMSMSE) before 7.0_3966002 HF1.1 and 7.5.x before 7.5_3966008 VHF1.2; Symantec Mail Security for Domino (SMSDOM) before 8.0.9 HF1.1 and 8.1.x before 8.1.3 HF1.2; CSAPI before 10.0.4 HF01; Symantec Message Gateway (SMG) before 10.6.1-4; Symantec Message Gateway for Service Providers (SMG-SP) 10.5 before patch 254 and 10.6 before patch 253; Norton AntiVirus, Norton Security, Norton ...

EPSS

Процентиль: 99%
0.53402
Средний

9.3 Critical

CVSS2