TCH-Thomas Posted August 9, 2007 Posted August 9, 2007 From: Secunia http://secunia.com/advisories/25215/ Rating: Highly critical Description: Secunia Research has discovered two vulnerabilities in various Symantec products, which can be exploited by malicious people to compromise a user's system. The vulnerabilities are caused due to errors in the AxSysListView32 and AxSysListView32OAA ActiveX controls (NavComUI.dll) when handling the "AnomalyList" and "Anomaly" properties respectively as they take a VARIANT* as argument. Successful exploitation allows execution of arbitrary code. The vulnerabilities have been confirmed in Norton Internet Security 2006 including Norton AntiVirus 12.7.0.2. According to the vendor, the following versions are affected: * Norton AntiVirus 2006 * Norton Internet Security 2006 * Norton Internet Security, Anti Spyware Edition 2005 * Norton System Works 2006 Solution: The vendor has issued a fix, which is available via LiveUpdate in Interactive Mode. Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.