CVE-2012-0291: Input Validation
Symantec pcAnywhere through 12.5.3, Altiris IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), Altiris Client Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), and Altiris Deployment Solution Remote pcAnywhere Solution 7.1 (aka 12.5.x and 12.6.x) allow remote attackers to cause a denial of service (application crash or hang) via (1) malformed data from a client, (2) malformed data from a server, or (3) an invalid response.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0291?
CVE-2012-0291 has a high severity rating due to the potential for remote code execution.
How do I fix CVE-2012-0291?
To fix CVE-2012-0291, upgrade to the latest patched version of Symantec pcAnywhere or apply the necessary security updates.
What versions of Symantec pcAnywhere are affected by CVE-2012-0291?
CVE-2012-0291 affects multiple versions of Symantec pcAnywhere including versions up to 12.5.3.
Is CVE-2012-0291 described in any security advisories?
Yes, CVE-2012-0291 is detailed in various security advisories and reports regarding its vulnerabilities.
What impacts can CVE-2012-0291 have on affected systems?
CVE-2012-0291 can lead to unauthorized remote access and control over affected systems, posing a significant security risk.