Symantec AntiVirus Scan Engine has serious bug

Symantec has reported a critical vulnerability in its AntiVirus Scan Engine Software.

Users of the Symantec's AntiVirus Scan Engine are being advised to upgrade their software, thanks to a critical security bug in the product. The flaw could theoretically allow an attacker to take control of an affected system, according to Symantec

Because of a bug in the Scan Engine's administrative interface, it is possible for an attacker to take over a system running the software by creating a specially crafted HTTP (Hypertext Transfer Protocol) request, Symantec said in a security advisory. The attacker would need to gain access to an exposed administrative port on the server for this attack, the report said.

Users of versions 4.0 and 4.3 of the Scan Engine product are advised to upgrade to version 4.3.12, Symantec said.

Symantec is the second security vendor to report a major security bug in its products this week. Kaspersky Labs also reported a similarly critical flaw in its Antivirus Library, which is used by a wide range of the company's antivirus products.

Symantec's advisory can be found here: http://www.symantec.com/avcenter/security/Content/2005.10.04.html

More about: Symantec

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the Computerworld comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Whitepapers
Latest Stories
Community Comments
Whitepapers
All whitepapers
Sign up now to get free exclusive access to reports, research and invitation only events.
Featured Download
/downloads/product/19/avg-anti-virus-free-edition/

AVG Anti-Virus Free Edition

Note: This review covers version 8.5 of the software. This software is now in version 9.0. Antivirus program AVG 8.5 Free offers solid features and ...

Computerworld newsletter

Join the most dedicated community for IT managers, leaders and professionals in Australia