CVE-2003-1310: Medium severity Symantec Norton Antivirus vulnerability
The DeviceIoControl function in the Norton Device Driver (NAVAP.sys) in Symantec Norton AntiVirus 2002 allows local users to gain privileges by overwriting memory locations via certain control codes (aka "Device Driver Attack").
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2003-1310?
CVE-2003-1310 is classified as a high-severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2003-1310?
To mitigate CVE-2003-1310, it is recommended to uninstall vulnerable versions of Symantec Norton AntiVirus or apply available patches if applicable.
What systems are affected by CVE-2003-1310?
CVE-2003-1310 affects Symantec Norton AntiVirus 2002 and 2003 on Windows operating systems.
Can CVE-2003-1310 be exploited remotely?
CVE-2003-1310 requires local access to the machine to exploit the vulnerability.
What potential impact does CVE-2003-1310 have on systems?
CVE-2003-1310 can allow local users to gain elevated privileges, potentially compromising the integrity and security of the affected system.