Version: 2008

March 30, 2005 8:47 AM PST

Symantec details flaws in its antivirus software

  • 3 comments
Symantec has reported glitches in its antivirus software that could allow hackers to launch denial-of-service attacks on computers running the applications.

In a notice posted on its Web site this week, Symantec detailed two similar vulnerabilities found in its Norton AntiVirus software, which is sold on its own or bundled in Norton Internet Security and Norton System Works. The flaws, which could lead to computers crashing or slowing severely if attacked, are limited to versions of the software released for 2004 and 2005.

The Information-Technology Promotion Agency of Japan, a government-affiliated tech watchdog group, identified the first instance of the problem in the AutoProtect feature of the Norton AntiVirus consumer product, Symantec said. AutoProtect is used to scan files for viruses, Trojan attacks and worms.

The flaw essentially causes Symantec's software to crash when it is asked to inspect a file specifically designed to exploit the flaw. The file could be submitted either remotely from outside a system or internally by someone with physical access to a computer, Symantec said.

The second flaw, discovered by the Japan Computer Emergency Response team, can be used to launch denial-of-service attacks by scanning specific file modifications using the SmartScan feature in Norton AntiVirus. Symantec said that any malicious use of that vulnerability would specifically require someone with authorized access to a computer to exploit the issue. SmartScan is designed to scour for viruses hidden in file extensions, as well as in executable and document files.

No attacks related to either problem have been reported so far, according to Symantec. The company also said in its warning that both vulnerabilities are "low impact" threats to its customers.

Cupertino, Calif.-based Symantec said it has informed its customers of the problems and has issued patches to correct the flaws, including sending out an automated fix to subscribers to its Automatic LiveUpdate service. The company recommended that people who have not already applied the patches do so immediately to protect against potential attacks.

See more CNET content tagged:
Symantec Corp., flaw, antivirus software, Symantec Norton AntiVirus, vulnerability

Add a Comment (Log in or register) (3 Comments)
  • prev
  • 1
  • next
There is one flaw they left out...
by jachamp March 30, 2005 9:38 AM PST
Norton Antivirus is about as buggy a software package as I've ever come across. I urge the people who ask me for help to rip it out of their systems.

And once they do the bulk of their problems mysteriously go away.
Reply to this comment
Or if you try to upgrade it
by Sir Geek March 30, 2005 9:46 AM PST
We wife had Norton System Works 2004 and it was cheaper to buy the 2005 than to get the new Anti Virus subscription... But the damned thing keeps saying it needs to uninstall the old version but fails. I've removed every key that I can find referencing Norton or Symantec from the Registry but no dice.

We wound up install Avast Antivirus and its nice. Other than lacking the means to kick off a system scan from a bat file or automatically its great. It finds stuff that NSW/AV never found.
Reply to this comment
AVG
by pentium4forever March 31, 2005 7:31 AM PST
That's why I use AVG, it's free afterall!
Reply to this comment
(3 Comments)
  • prev
  • 1
  • next
advertisement

Latest tech news headlines

RSS Feeds

Add headlines from CNET News to your homepage or feedreader.

More feeds available in our RSS feed index.

Markets

Market news, charts, SEC filings, and more

Related quotes

Symantec (0.00%) 0.00 18.03
Dow Jones Industrials (0.12%) 12.92 10,533.02
S&P 500 (0.07%) 0.75 1,127.23
NASDAQ (0.21%) 4.85 2,290.54
CNET TECH (0.19%) 3.21 1,661.12
  Symbol Lookup
advertisement

Inside CNET News

Scroll Left Scroll Right