Denial of service vulnerability in the Decomposer component in Symantec Antivirus Products via a certain value in the PACK_SIZE field of a RAR archive file headerID: oval:org.secpod.oval:def:9768 | Date: (C)2013-03-18 (M)2021-07-09 |
Class: VULNERABILITY | Family: windows |
The host is installed with Symantec Scan Engine before 5.1.4.24 Symantec Antivirus before 9.0 MR6-MP1, 10.x before 10.1 MR5 MP1 or Symantec Client Security before 2.0 MR6-MP1 or 3.x before 3.1 MR5 MP1 and is prone to a denial of service vulnerability. A flaw is present in the application, which fails to handle a certain value in the PACK_SIZE field of a RAR archive file header. Successful exploitation could allow attackers to crash the service.
Platform: |
Microsoft Windows 2000 |
Microsoft Windows 7 |
Microsoft Windows 8 |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows Vista |
Microsoft Windows XP |
Product: |
Symantec Antivirus |
Symantec Client Security |
Symantec Scan Engine |