← Back

CVE-2010-3268

nvd nist
Published: Dec 22, 2010Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The GetStringAMSHandler function in prgxhndl.dll in hndlrsvc.exe in the Intel Alert Handler service (aka Symantec Intel Handler service) in Intel Alert Management System (AMS), as used in Symantec Antivirus Corporate Edition 10.1.4.4010 on Windows 2000 SP4 and Symantec Endpoint Protection before 11.x, does not properly validate the CommandLine field of an AMS request, which allows remote attackers to cause a denial of service (application crash) via a crafted request.

Affected (19)

1 product
Intel Alert Management System
2 products
Antivirus
Endpoint Protection
Configuration A
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Version 10.1.4.4010
Running on/withPlatform Versions
Microsoft
Windows 2000
All versions
Configuration B
17 vulnerable
Vulnerable SoftwareAffected Versions
Symantec
Version 11.0.1
Version 11.0.1 mp1
Version 11.0.1 mp2
Version 11.0.2
Version 11.0.2 mp1
Version 11.0.2 mp2
Version 11.0.3001
Version 11.0.4
Version 11.0.4 mp1a
Version 11.0.4 mp2
Version 11.0
Version 11.0 rtm
Version 11.0 ru5
Version 11.0 ru6
Version 11.0 ru6a
Version 11.0 ru6mp1
Version 11.0 ru6mp2

References (20)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.