First published: Tue Sep 19 2006(Updated: )
The \Device\SymEvent driver in Symantec Norton Personal Firewall 2006 9.1.0.33, and other versions of Norton Personal Firewall, Internet Security, AntiVirus, SystemWorks, Symantec Client Security SCS 1.x, 2.x, 3.0, and 3.1, Symantec AntiVirus Corporate Edition SAVCE 8.x, 9.x, 10.0, and 10.1, Symantec pcAnywhere 11.5 only, and Symantec Host, allows local users to cause a denial of service (system crash) via invalid data, as demonstrated by calling DeviceIoControl to send the data.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Norton Antivirus | =10.1 | |
Symantec Client Security | =3.0 | |
Symantec Norton Antivirus | =2004 | |
Norton Internet Security | =2006 | |
Norton Internet Security | =2004 | |
Symantec Client Security | =1.0.1 | |
Symantec Client Security | =1.0.0_b8.01.9378 | |
Symantec Norton Antivirus | =9.0.2.1000 | |
Symantec Client Security | =1.0.1_build_8.01.460-mr6 | |
Symantec Norton Antivirus | =9.0.3.1000 | |
Symantec Norton Personal Firewall | =2003 | |
Symantec Norton System Works | =2005 | |
Symantec Norton System Works | =2003_professional_edition | |
Symantec Client Security | =1.0.1_build_8.01.446-mr4 | |
Symantec Norton Antivirus | =8.01.460 | |
Symantec Client Security | =2.0.1_build_9.0.1.1000-mr1 | |
Norton Internet Security | =2007 | |
Norton Internet Security | =2004 | |
Symantec Client Security | =2.0.3_build_9.0.3.1000-mr3 | |
Symantec Client Security | =1.1.1_build_393 | |
Symantec Norton Antivirus | =2007 | |
Symantec Norton Antivirus | =10.0.2.2011 | |
Symantec Norton Antivirus | =10.0.2.2010 | |
Symantec Norton Antivirus | =10.0 | |
Symantec Norton Antivirus | =8.01.437 | |
Symantec Norton Antivirus | =2003 | |
Symantec Client Security | =1.1.1_mr1_build_8.1.1.314a | |
Symantec Norton Antivirus | =8.1.1_build393 | |
Symantec pcAnywhere | =11.5 | |
Symantec Norton Antivirus | =8.1.1.323 | |
Symantec Norton Antivirus | =8.01.457 | |
Symantec Norton Antivirus | =8.1.1_build8.1.1.314a | |
Symantec Host IDS | ||
Symantec Client Security | =1.1.1 | |
Symantec Norton Antivirus | =9.0.1.1.1000 | |
Symantec Norton Antivirus | =8.1.0.825a | |
Symantec Norton System Works | =2006 | |
Symantec Client Security | =2.0.5_build_1100 | |
Norton Internet Security | =2005 | |
Symantec Norton Antivirus | =9.0.5.1100 | |
Symantec Norton Antivirus | =2.1 | |
Symantec Norton Antivirus | =8.01.446 | |
Symantec Norton Antivirus | =8.01.464 | |
Symantec Norton Antivirus | =10.0.2.2001 | |
Symantec Norton Antivirus | =8.0.1.425a | |
Symantec Client Security | =1.0.1_build_8.01.471-mr8 | |
Symantec Client Security | =1.0.1_build_8.01.457-mr5 | |
Symantec Norton Personal Firewall | =2004 | |
Symantec Client Security | =1.1 | |
Norton Internet Security | =2003 | |
Symantec Norton Antivirus | =10.0.2.2020 | |
Symantec Norton Antivirus | =8.1.1.319 | |
Symantec Norton Antivirus | =8.01.434 | |
Norton Internet Security | =2003 | |
Symantec Norton Antivirus | =8.0.1.425c | |
Symantec Client Security | =1.1_stm_b8.1.0.825a | |
Symantec Norton Antivirus | =8.0.1.501 | |
Symantec Client Security | =1.1.1_mr3_build_8.1.1.323 | |
Symantec Client Security | =1.1.1_mr2_build_8.1.1.319 | |
Symantec Norton Antivirus | =8.01.471 | |
Symantec Norton System Works | =2005_premier | |
Symantec Client Security | =1.1.1_mr5_build_8.1.1.336 | |
Symantec Client Security | =1.0.1_build_8.01.437 | |
Symantec Norton Antivirus | =9.0.4 | |
Symantec Client Security | =1.0.1_build_8.01.425a-mr1 | |
Symantec Norton Antivirus | =2006 | |
Symantec Norton System Works | =2004_professional_edition | |
Symantec Norton Antivirus | =8.0.1.9378 | |
Symantec Client Security | =1.0.1_build_8.01.501-mr9 | |
Symantec Norton Antivirus | =9.0.0.338 | |
Symantec Norton Personal Firewall | =2005 | |
Symantec Client Security | =2.0 | |
Symantec Norton Personal Firewall | =2006 | |
Symantec Norton Antivirus | =10.0.2.2000 | |
Symantec Client Security | =2.0_scf_7.1 | |
Symantec Norton Antivirus | =8.0 | |
Symantec Client Security | =3.1 | |
Symantec Client Security | =1.0_build_8.01.9374 | |
Symantec Norton Antivirus | =2005 | |
Symantec Norton System Works | =2004 | |
Symantec Client Security | =1.0.1_build_8.01.429c-mr2 | |
Symantec Client Security | =1.1.1_mr4_build_8.1.1.329 | |
Symantec Norton Antivirus | =8.1 | |
Symantec Client Security | =1.1.1_mr6_b8.1.1.266 | |
Symantec Client Security | =1.0.1_build_8.01.434-mr3 | |
Symantec Norton Antivirus | =8.1.1.329 | |
Norton Internet Security | =2005 | |
Symantec Norton Antivirus | =10.0.2.2021 | |
Symantec Norton Antivirus | =8.1.1.377 | |
Symantec Norton Antivirus | =8.0.1.9374 | |
Symantec Norton Antivirus | =9.0 | |
Symantec Norton Antivirus | =8.1.1 | |
Symantec Norton Antivirus | =9.0.5 | |
Symantec Norton Antivirus | =2003 | |
Symantec Client Security | =2.0_stm_build_9.0.0.338 | |
Symantec Client Security | =1.0.1_build_8.01.464-mr7 | |
Symantec Norton Antivirus | =8.0.1 | |
Symantec Norton Antivirus | =10.0.2.2002 | |
Symantec Norton Antivirus | =8.1.1.366 | |
Symantec Client Security | =2.0.2_build_9.0.2.1000-mr2 | |
Symantec Client Security | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4855 is classified as a critical vulnerability due to its potential for remote code execution.
To resolve CVE-2006-4855, you should update to the latest version of the affected Symantec products, which addresses this vulnerability.
CVE-2006-4855 affects various versions of Symantec Norton Personal Firewall, Symantec AntiVirus, and other related security products.
CVE-2006-4855 exploits insufficient validation of input buffers in the SymEvent driver, allowing for potential remote code execution.
There have been reports indicating that CVE-2006-4855 was actively exploited shortly after its disclosure, highlighting its critical nature.