My weblog about all things that interest me (and hopefully you): viruses, programming in general, death & black metal, certain web sites... Well, it could be anything.

Wednesday, February 09, 2005

Symantec AntiVirus Library Heap Overflow

Internet Security Systems has a report about a vulnerability found in almost all antivirus products from Symantec concerning the use of a malformed UPX compressed executable that causes a heap overflow, making it possible to execute code on a remote machine when scanning such file. Newer products are immune, but I think there are still enough users that use an older version of some product.

No comments: