|
|
 |
 |
 |
DISCLAIMER: Logging other people's keystrokes or breaking
into other people's computer without their permission can
be considered illegal by the courts of many countries.
The monitoring software reviewed here is ONLY for authorized
system administrators and/or owners of computers.
We assume no liability and are not responsible for any misuse
or damage caused by the keylogging software. The end user of
this software is obliged to obey all applicable local, state,
federal and other laws in his country of residence.
December 21, 2005
 Symantec security products hit by high-risk flaw
The bug affects most of Symantec's products, including enterprise and home user software, across both the Windows and Macintosh platforms
Symantec's antivirus software contains a vulnerability that could be exploited by a malicious hacker to take control of a system, the company admitted late on Tuesday.
According to Symantec the bug, which affects a range of the company's security products, is a ‘high’ risk, while the Danish security specialists Secunia have labelled it as ‘highly critical’.
According to an advisory issued by Secunia, the bug affects most of Symantec's products, including enterprise and home user versions of Symantec AntiVirus, Symantec Norton AntiVirus and Symantec Norton Internet Security, across both the Windows and Macintosh platforms.
The vulnerability is within Symantec AntiVirus Library, which provides file format support for virus analysis. 'During decompression of RAR files, Symantec is vulnerable to multiple heap overflows allowing attackers complete control of the system(s) being protected,' said security consultant Alex Wheeler, who first discovered the flaw. 'These vulnerabilities can be exploited remotely, without user interaction, in default configurations through common protocols such as SMTP.'
Symantec has not yet released a patch to address this problem. In the meantime, Wheeler recommends that users 'disable scanning of RAR compressed files until the vulnerable code is fixed'.
Source: ZDNet UK
All news for September, 2008 All news for 2008 year All news for 2007 year All news for 2006 year All news for 2005 year All news for 2004 year
DONATION: Keylogger.org is an independent research
project supported by a team of enthusiasts. If you find this
project useful or would like to help foster its continued
development please consider making a donation using PayPal`s
online secure payment service. A PayPal account is not required.
All major credit cards are accepted (MasterCard/Eurocard,
Visa/Delta/Electron, American Express, Switch/Maestro, Solo).
Simply click the button below.
Any amount would be useful and appreciated!
Thanks in advance for your support!
|
|
 |
 |
|