7.5

CVE-2005-0249

Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header.

Data is provided by the National Vulnerability Database (NVD)
SymantecAntivirus Scan Engine Version < 4.3.3
SymantecBrightmail Antispam Version4.0
SymantecBrightmail Antispam Version5.5
SymantecClient Security Version1.0.1_build_8.01.434 Updatemr3
SymantecClient Security Version1.0.1_build_8.01.437
SymantecClient Security Version1.0.1_build_8.01.446 Updatemr4
SymantecClient Security Version1.0.1_build_8.01.457 Updatemr5
SymantecClient Security Version1.0.1_build_8.01.460 Updatemr6
SymantecClient Security Version1.0.1_build_8.01.464 Updatemr7
SymantecClient Security Version1.0.1_build_8.01.471 Updatemr8
SymantecClient Security Version1.1.1_mr1_build_8.1.1.314a
SymantecClient Security Version1.1.1_mr2_build_8.1.1.319
SymantecClient Security Version1.1.1_mr3_build_8.1.1.323
SymantecClient Security Version1.1.1_mr4_build_8.1.1.329
SymantecClient Security Version1.1.1_mr5_build_8.1.1.336
SymantecGateway Security Version1.0
SymantecGateway Security Version2.0
SymantecGateway Security Version2.0.1
SymantecMail Security Version4.0 Editiondomino
SymantecMail Security Version4.1 Updatebuild_458 Editionexchange
SymantecMail Security Version4.1 Updatebuild_459 Editionexchange
SymantecMail Security Version4.1 Updatebuild_461 Editionexchange
SymantecMail Security Version4.5_build_719 Editionexchange
SymantecNorton Antivirus Version2.18_build_83 Editionexchange
SymantecNorton Antivirus Version8.1.1.319 Editioncorporate
SymantecNorton Antivirus Version8.1.1.323 Editioncorporate
SymantecNorton Antivirus Version8.1.1.329 Editioncorporate
SymantecNorton Antivirus Version8.1.1_build8.1.1.314a Editioncorporate
SymantecNorton Antivirus Version8.01.434 Editioncorporate
SymantecNorton Antivirus Version8.01.437 Editioncorporate
SymantecNorton Antivirus Version8.01.446 Editioncorporate
SymantecNorton Antivirus Version8.01.457 Editioncorporate
SymantecNorton Antivirus Version8.01.460 Editioncorporate
SymantecNorton Antivirus Version8.01.464 Editioncorporate
SymantecNorton Antivirus Version8.01.471 Editioncorporate
SymantecNorton Antivirus Version9.0 Editionmacintosh_corporate
SymantecNorton Antivirus Version2004 Editionwindows
SymantecNorton Internet Security Version2004 Editionprofessional
SymantecNorton System Works Version2004 Editionwindows
SymantecSav Filter Domino Nt Ports Versionbuild3.0.5 Editionaix
SymantecSav Filter Domino Nt Ports Versionbuild3.0.5 Editionos_400
SymantecWeb Security Version3.01.59
SymantecWeb Security Version3.01.60
SymantecWeb Security Version3.01.61
SymantecWeb Security Version3.01.62
SymantecWeb Security Version3.01.63
SymantecWeb Security Version3.01.67
SymantecWeb Security Version3.01.68
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 10.6% 0.925
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P