NTA Monitor

Latest News

Finance industry faces serious IT security issues

23rd June 2008 The finance industry needs to keep its eye on the small change as well as the bigger picture of its security vulnerabilities Read More

Retail sector faces serious IT security issues

23rd June 2008 The retail sector needs to set out its stall and ring the changes in its security vulnerabilities if it is to avoid the potential for hackers to gain unauthorised system access and disrupt service availability Read More

IT managers have more security headaches to deal with

11th May 2008 NTA Monitor's 2008 Annual Security Report has revealed that the average number of vulnerabilities found per test have increased to 21 compared with 19 in 2007 Read More

Solutions not excuses for patch management warns NTA Monitor

23rd April 2008 Patch management is a vital security requirement for any organsation Read More
Date: 30th June 2004
Risk: Medium

Symantec Corp. is warning its customers about a security vulnerability within its antivirus application. The Internet security vendor ranks the flaw as "medium," while security research group Secunia pegged the flaw as "moderately critical."

The flaw, which resides within Symantec's Norton Antivirus 2004 application, could let attackers run code of their choice on a user's system, launch unauthorised pop-ups, or even create a denial-of-service condition to freeze Symantec's antivirus application. Virus and worm writers are increasingly attempting to disable antivirus and personal firewall security applications, so a flaw such as this would be a prime target for virus writers seeking to disable a user's defences.

The flaw resides within the way an ActiveX control within Norton Antivirus fails to properly verify or validate information sent to it. Symantec recommends that all Norton Antivirus users run the LiveUpdate feature to fix the ActiveX control security vulnerability.

According to Symantec's report, hackers attempting to launch malicious applications on a user's system would have to use malware already installed in the system and know the location of the application before being able to launch. The most likely scenario for this type of attack would be hackers luring users to download some type of malicious application from a web site or to download an E-mail attachment.

It's the second time in recent weeks that Symantec users have been advised to patch their security applications. On May 12, Symantec posted a security advisory and a handful of patches to fix several flaws within its consumer and corporate security software. Those flaws affected the consumer versions of Norton AntiSpam, Norton Internet Security and Professional, as well as Norton Personal Firewall for the years 2002 through 2004. Security holes within Symantec's corporate security software, Symantec Client Firewall 5.01 and 5.1.1 and Symantec Client Security 1.0, 1.1, and 2.0 also were disclosed.

References