CVE-2004-0683: Medium severity Symantec Norton Antivirus vulnerability
Published Jul 13, 2004
·Updated
Symantec Norton AntiVirus 2002 and 2003 allows remote attackers to cause a denial of service (CPU consumption) via a compressed archive that contains a large number of directories.
Affected Software
2 affected components
Symantec Norton Antivirus=2003
Symantec Norton Antivirus=2002
Event History
Jul 13, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0683?
CVE-2004-0683 is classified as a denial of service vulnerability.
2
How do I fix CVE-2004-0683?
To fix CVE-2004-0683, upgrade to a version of Symantec Norton AntiVirus that is not affected by this vulnerability.
3
What causes CVE-2004-0683?
CVE-2004-0683 is caused by the handling of compressed archives containing a large number of directories.
4
Which versions of Symantec Norton AntiVirus are affected by CVE-2004-0683?
CVE-2004-0683 affects Symantec Norton AntiVirus versions 2002 and 2003.
5
Can CVE-2004-0683 be exploited remotely?
Yes, CVE-2004-0683 can be exploited remotely by attackers who send a specially crafted compressed archive.