← Back

CVE-2005-0249

nvd nist
Published: Feb 8, 2005Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header.

Affected (49)

11 products
Antivirus Scan Engine
Brightmail Antispam
Client Security
Gateway Security
Mail Security
Norton Antivirus
Norton Internet Security
Norton System Works
Sav Filter Domino Nt Ports
Sav Filter For Domino Nt
Web Security
Configuration A
49 vulnerable
Vulnerable SoftwareAffected Versions
Before 4.3.3
Symantec
Version 4.0
Version 5.5
Symantec
Version 1.0.1_build_8.01.434 mr3
Version 1.0.1_build_8.01.437
Version 1.0.1_build_8.01.446 mr4
Version 1.0.1_build_8.01.457 mr5
Version 1.0.1_build_8.01.460 mr6
Version 1.0.1_build_8.01.464 mr7
Version 1.0.1_build_8.01.471 mr8
Version 1.1.1_mr1_build_8.1.1.314a
Version 1.1.1_mr2_build_8.1.1.319
Version 1.1.1_mr3_build_8.1.1.323
Version 1.1.1_mr4_build_8.1.1.329
Version 1.1.1_mr5_build_8.1.1.336
Symantec
Version 1.0
Version 2.0.1
Version 2.0
Symantec
Version 4.0
Version 4.1 build_458
Version 4.1 build_459
Version 4.1 build_461
Version 4.5_build_719
Symantec
Version 2.18_build_83
Version 2004
Version 8.01.434
Version 8.01.437
Version 8.01.446
Version 8.01.457
Version 8.01.460
Version 8.01.464
Version 8.01.471
Version 8.1.1.319
Version 8.1.1.323
Version 8.1.1.329
Version 8.1.1_build8.1.1.314a
Version 9.0
Version 2004
Version 2004
Symantec
Version build3.0.5
Version build3.0.5
Version 3.1.1
Symantec
Version 3.01.59
Version 3.01.60
Version 3.01.61
Version 3.01.62
Version 3.01.63
Version 3.01.67
Version 3.01.68

References (10)

Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: cve@mitre.org
PatchThird Party AdvisoryUS Government Resource
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
VDB Entry

Timeline

No history available yet.