2.6
CVSSv2

CVE-2004-0445

Published: 07/07/2004 Updated: 11/07/2017
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 265
Vector: AV:N/AC:H/Au:N/C:N/I:N/A:P

Vulnerability Summary

The SYMDNS.SYS driver in Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 up to and including 2.0 allows remote malicious users to cause a denial of service (CPU consumption from infinite loop) via a DNS response with a compressed name pointer that points to itself.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec client security 1.5

symantec client security 1.6

symantec norton internet security 2002

symantec norton internet security 2003

symantec client security 1.0

symantec client security 1.1

symantec client security 1.9

symantec client security 2.0

symantec norton internet security 2004

symantec norton personal firewall 2002

symantec client security 1.2

symantec client security 1.3

symantec client security 1.4

symantec norton antispam 2004

symantec norton personal firewall 2003

symantec norton personal firewall 2004

symantec client firewall 5.01

symantec client firewall 5.1.1

symantec client security 1.7

symantec client security 1.8

Exploits

/* HOD-symantec-firewall-DoS-explc: * * Symantec Multiple Firewall DNS Response Denial-of-Service * * Exploit version 01 coded by * * * ::[ houseofdabus ]:: * * * * Bug discoveried by eEye: * wwweeyecom/html/Research/Advisories/AD20040512Bhtml * * ---------------------------------------------------------- ...