internet.com
You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet |Refer-It

WinPlanet Software Downloads and Reviews for Small Businesses
Search
Power Search | Tips
-
Navigate WinPlanet
WinPlanet Home Page

Software
Download Index
In-Depth Reviews
Tips & Tutorials
Updates
News

Software Categories
Browsers
Chat / Conferencing
Desktop Utilities
Development
Internet Apps
Multimedia
OS Service Packs
Productivity Tools

Software Glossary

WinPlanet Newsletter

internet.commerce
Partners & Affiliates













Small Business Computing
Small Business Computing
Ecommerce Guide
Webopedia
WinPlanet

WinPlanet / News

Download of the day
Internet Explorer 8

Most Popular Software Downloads
Mozilla Firefox 3.0
Ad-Aware 2008 Free
Internet Explorer 7
QuickTime for Windows
Paint Shop Pro
Mozilla Firefox Portable Edition 3
AVG Anti-Virus Free
Windows XP Service Pack 3
Ashampoo WinOptimizer
Adobe Flash Player
Windows Live Suite

Most Popular Software Articles
Windows Vista Tips & Tricks, Part 1
Windows Vista: Worthy of the Hype?
Windows Wireless Zero Configuration: Five Steps to Sanity


Software Reviews

Symantec Scrambles to Fix Firewall Flaws
Users at Risk of Code Execution Attacks
Ryan Naraine

Computer security specialist Symantec Thursday moved swiftly to patch four very serious vulnerabilities in its popular Norton firewall products.

An alert from Cupertino, Calif.-based Symantec described the flaws as "high risk" and warned that a successful exploit could wipe out a user's computer. Attackers could also execute remote code with kernel-level privileges on the targeted system.

The vulnerabilities, first discovered by researchers at eEye Digital Security, affect both enterprise and consumer Norton users. Products at risk include Symantec Client Firewall 5.01 and 5.1.1; Symantec Client Security 1.0, 1.1, and 2.0 (SCF 7.1); Norton Internet Security and Professional 2002, 2003, and 2004; Norton Personal Firewall 2002, 2003, and 2004; and Norton AntiSpam 2004.

Independent research firm Secunia rates the flaws as "extremely critical" because they could lead to a destructive worm attack. "The vulnerability is very similar to the 'ICQ Response Buffer Overflow' vulnerability in various ISS products, which was already exploited by the 'Witty' worm the day after it was disclosed to the public," states Secunia.

Secunia CTO Thomas Kristensen reports the vulnerabilities could be using UDP traffic, which could lead to a scenario of a "fast and violent" attack similar to the Slammer worm that exploited Microsoft SQL servers last year.

"It is important that people patch and upgrade their Symantec Firewall products today as there is no other effective solution against this," Kristensen says.

For Symantec, the discovery of such a serious bug in products designed to provide PC security could be disastrous. The company has used the popularity – and success &mnash; of the Norton AntiVirus brand to gain traction in the enterprise market with VPN and firewall management applications.

Now comes word that Norton firewalls can be exploited no matter how the firewall has been configured. To its credit, Symantec wasted no time in confirming the existence of the holes and rushing out fixes. Patches have already been released through Symantec LiveUpdate and technical support channels.

Clients running consumer versions of the affected products who regularly run a manual Symantec LiveUpdate should be automatically protected against this issue. "However, to be sure they are fully protected, customers should manually run Symantec LiveUpdate to ensure all available updates are installed," the company says.

Enterprise users of Symantec Client Firewall or Symantec Client Security should download and apply patches obtained through their appropriate support channels. The company reports it is unaware of any active attempts to exploit the flaws.

The flaws include a boundary error within the "SYMDNS.SYS" driver when processing certain NBNS (NetBIOS Name Service) datagrams. This bug can be exploited to cause a stack-based buffer overflow by sending a specially crafted NBNS response to a vulnerable system.

Most of the flaws leave users at risk of scenarios where an attacker could execute malicious code with kernel mode privileges.

News courtesy of internetnews.com.

Contents:
1. Users at Risk of Code Execution Attacks


Additional Articles:

  • Symantec Boosts Norton Internet Security and Personal Firewall Packages
  • Norton Internet Security 2003 Review
  • Symantec Adds AntiSpam to Norton Internet Security, Password Manager to Norton SystemWorks
  • Norton Internet Security 2004 Review
  • Norton Internet Security 2004
  • Norton AntiVirus 2004
  • Symantec Updates Norton AntiVirus, Internet Security




  • JupiterOnlineMedia

    internet.comearthweb.comDevx.commediabistro.comGraphics.com

    Search:

    Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

    Jupitermedia Corporate Info


    Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

    Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers

    Solutions
    Whitepapers and eBooks
    IBM eBook: Planning a Service Oriented Architecture
    IBM eBook: Choosing the Right Architecture--What It Means for You and Your Business
    Microsoft Article: Will Hyper-V Make VMware This Decade's Netscape?
    Avaya Article: Using Intelligent Presence to Create Smarter Business Applications
    Intel Go Parallel Article: Getting Started with TBB on Windows
    Microsoft Article: 7.0, Microsoft's Lucky Version?
    Avaya Article: How to Feed Data into the Avaya Event Processor
    IBM Article: Developing a Software Policy for Your Organization
    Microsoft Article: Managing Virtual Machines with Microsoft System Center
    Intel Go Parallel Article: Intel Threading Tools and OpenMP
    HP eBook: Storage Networking , Part 1
    Microsoft Article: Solving Data Center Complexity with Microsoft System Center Configuration Manager 2007
    MORE WHITEPAPERS, EBOOKS, AND ARTICLES
    Webcasts
    HP Video: StorageWorks EVA4400 and Oracle
    HP Webcast: Storage Is Changing Fast - Be Ready or Be Left Behind
    Microsoft Silverlight Video: Creating Fading Controls with Expression Design and Expression Blend 2
    MORE WEBCASTS, PODCASTS, AND VIDEOS
    Downloads and eKits
    Red Gate Download: SQL Toolbelt and free High-Performance SQL Code eBook
    Iron Speed Designer Application Generator
    MORE DOWNLOADS, EKITS, AND FREE TRIALS
    Tutorials and Demos
    Silverlight 2 App and Walkthrough: Leverage Silverlight 2 with SQL Server and XML
    IBM Article: Enterprise Search--Do You Know What's Out There?
    HP Demo: StorageWorks EVA4400
    Microsoft Article: The Progress and Promise of Deep Zoom
    Microsoft How-to Article: Get Going with Silverlight and Windows Live
    MORE TUTORIALS, DEMOS AND STEP-BY-STEP GUIDES