CVE-2005-2017: Critical severity symantec norton antivirus vulnerability
Symantec AntiVirus 9 Corporate Edition allows local users to gain privileges via the "Scan for viruses" option, which launches a help window with raised privileges, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2002-1540.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2017?
CVE-2005-2017 has a medium severity rating due to potential local privilege escalation risks.
How do I fix CVE-2005-2017?
To mitigate CVE-2005-2017, update Symantec AntiVirus Corporate Edition to a version that addresses this vulnerability.
Who is affected by CVE-2005-2017?
Users of Symantec AntiVirus 9 Corporate Edition, specifically version 9.0.1.1000, are affected by CVE-2005-2017.
What exploit does CVE-2005-2017 enable?
CVE-2005-2017 allows local users to gain elevated privileges through the 'Scan for viruses' option.
Is CVE-2005-2017 a re-introduction of a prior vulnerability?
Yes, CVE-2005-2017 is a re-introduction of a previously addressed vulnerability identified as CVE-2002-1540.