Skip to main content

Symantec Endpoint Protection Manager Buffer Overflow Vulnerability

Last Update Date: 20 Jun 2013 19:04 Release Date: 20 Jun 2013 3326 Views

RISK: Medium Risk

TYPE: Security software and application - Security Software & Appliance

TYPE: Security Software & Appliance

A vulnerability has been identified  in Symantec Endpoint Protection Manager. A remote user can execute arbitrary code on the target system.

 

A remote user can send specially crafted data to trigger a buffer overflow in 'Secars.dll' and execute arbitrary code on the target system.


Impact

  • Remote Code Execution

System / Technologies affected

  • Versions 12.0.x, 12.1.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (12.1.3 (RU3)).

Vulnerability Identifier


Source


Related Link