Wednesday, July 28, 2010

Symantec Antivirus : Symantec AMS Intel Alert Handler service Design Flaw vulnerability

Users of Symantec Antivirus please be advised of a Symantec AMS Intel Alert Handler service Design Flaw vulnerability that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
foofus-20100725: foofus-20100725 - Symantec AMS Intel Alert Handler service Design Flaw
ymantec Antivirus Corporate Edition AMS Intel Alert Handler
Symantec Antivirus Corporate Edition AMS Intel Alert Handler
2. Description:



The Intel Alert Handler service (hndlrsvc.exe) provides alert setup and response

capabilities to AMS2. A design error in Symantec's implementation of this function

allows an attacker who can establish a TCP connection to port 38292, on a vulnerable

host to execute commands at system level on that host.
Read more at www.criticalwatch.com
 

No comments:

Post a Comment