Users of Symantec Antivirus please be advised of a Symantec AMS Intel Alert Handler service Design Flaw vulnerability that has been identified.
To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)
Amplify’d from www.criticalwatch.com
foofus-20100725: foofus-20100725 - Symantec AMS Intel Alert Handler service Design Flaw
ymantec Antivirus Corporate Edition AMS Intel Alert Handler
Symantec Antivirus Corporate Edition AMS Intel Alert Handler
2. Description:
The Intel Alert Handler service (hndlrsvc.exe) provides alert setup and response
capabilities to AMS2. A design error in Symantec's implementation of this function
allows an attacker who can establish a TCP connection to port 38292, on a vulnerable
host to execute commands at system level on that host.
Read more at www.criticalwatch.com
See this Amp at http://bit.ly/cQuBHw

No comments:
Post a Comment