Symantec antivirus software exposes computers



Security company says flaw lets hackers steal sensitive data
AP: May 26, 2006, 7:45pm:

WASHINGTON - Symantec Corp.'s leading antivirus software, which protects
some of the world's largest corporations and U.S. government agencies,
suffers from a flaw that lets hackers seize control of computers to
steal sensitive data, delete files or implant malicious programs,
researchers said Thursday.

Symantec said it was investigating the issue but could not immediately
corroborate the vulnerability. If confirmed, the threat to computer
users would be severe because the security software is so widely used,
and because no action is required by victims using the latest versions
of Symantec Antivirus to suffer a crippling attack over the Internet.

Maiffret said eEye's testing showed the problem affects Symantec
Antivirus Version 10, including its corporate editions. He said
Symantec's consumer antivirus product, known as Norton Antivirus 2006,
and its current security suite - which includes both antivirus and
firewall features - did not appear to be vulnerable.


http://www.msnbc.msn.com/id/12990213/


--
Michael Scheidell, CTO
561-999-5000, ext 1131
SECNAP Network Security Corporation
Keep up to date with latest information on IT security: Real time
security alerts: http://www.secnap.com/news




Relevant Pages

  • Re: Norton internet security 2005
    ... Panda Platinum Internet Security 2006/2007 privilege escalation and ... Symantec AntiVirus Corporate Edition Format String Vulnerability ...
    (de.comp.security.firewall)
  • Re: Secure Enough?
    ... Avast Antivirus, AdAware SE, and Spy Blaster. ... Is this enough security protection? ... reliable and up-to-date antivirus software, ... to -- protect the computer user from him/herself. ...
    (microsoft.public.windowsxp.basics)
  • Re: Norton Antivirus IIS problems
    ... Security software for the mass consumer tend to assume that users should not ... ends up being an arms-race between you and Symantec. ... I have very recently installed Norton Antivirus and Internet Security 2004 ...
    (microsoft.public.inetserver.iis)
  • Re: Problem with Symantec Antivirus Corporate Edition 8.0: Faulty Definition updates disabled client
    ... antivirus firms routinely find security holes in their own products. ... Symantec merely follows the overall desire of the ... Summer's Hottest Certification Just Got HOTTER! ...
    (NT-Bugtraq)
  • RE: security software
    ... Routinely installing Critical Security Updates. ... Your Cable company may provide some level of firewall protection. ... ANTIVIRUS: ...
    (microsoft.public.security)