CVE-2006-4802 (CNNVD-200609-242)
中文标题:
Symantec AntiVirus 格式串处理漏洞
英文标题:
Format string vulnerability in the Real Time Virus Scan service in Symantec AntiVirus Corporate Edit...
漏洞描述
中文描述:
Symantec AntiVirus是非常流行的杀毒解决方案。 Symantec AntiVirus企业版允许在发现病毒或触发了Tamper Protection功能的时候自定义所显示的警告通知消息。警告通知进程没有正确的验证用户生成的输入,这可能允许本地攻击者用可能访问进程栈的特制格式串替换Tamper Protection和Virus Alert Notification消息。成功攻击允许攻击者以提升的权限执行攻击者所选择的代码。 此外,警告通知进程中还存在另一个格式串漏洞,允许本地用户使用格式串替换警告通知消息,如果检测到了恶意文件后显示通知消息时,就会导致实时病毒扫描服务崩溃。
英文描述:
Format string vulnerability in the Real Time Virus Scan service in Symantec AntiVirus Corporate Edition 8.1 up to 10.0, and Client Security 1.x up to 3.0, allows local users to execute arbitrary code via an unspecified vector related to alert notification messages, a different vector than CVE-2006-3454, a "second format string vulnerability" as found by the vendor.
CWE类型:
标签:
受影响产品
| 厂商 | 产品 | 版本 | 版本范围 | 平台 | CPE |
|---|---|---|---|---|---|
| symantec | client_security | 1.0 | - | - |
cpe:2.3:a:symantec:client_security:1.0:*:*:*:*:*:*:*
|
| symantec | client_security | 1.0.1 | - | - |
cpe:2.3:a:symantec:client_security:1.0.1:*:*:*:*:*:*:*
|
| symantec | client_security | 1.0.1_build_8.01.434 | - | - |
cpe:2.3:a:symantec:client_security:1.0.1_build_8.01.434:mr3:*:*:*:*:*:*
|
| symantec | client_security | 1.0.1_build_8.01.437 | - | - |
cpe:2.3:a:symantec:client_security:1.0.1_build_8.01.437:*:*:*:*:*:*:*
|
| symantec | client_security | 1.0.1_build_8.01.446 | - | - |
cpe:2.3:a:symantec:client_security:1.0.1_build_8.01.446:mr4:*:*:*:*:*:*
|
| symantec | client_security | 1.0.1_build_8.01.457 | - | - |
cpe:2.3:a:symantec:client_security:1.0.1_build_8.01.457:mr5:*:*:*:*:*:*
|
| symantec | client_security | 1.0.1_build_8.01.460 | - | - |
cpe:2.3:a:symantec:client_security:1.0.1_build_8.01.460:mr6:*:*:*:*:*:*
|
| symantec | client_security | 1.0.1_build_8.01.464 | - | - |
cpe:2.3:a:symantec:client_security:1.0.1_build_8.01.464:mr7:*:*:*:*:*:*
|
| symantec | client_security | 1.0.1_build_8.01.471 | - | - |
cpe:2.3:a:symantec:client_security:1.0.1_build_8.01.471:mr8:*:*:*:*:*:*
|
| symantec | client_security | 1.1 | - | - |
cpe:2.3:a:symantec:client_security:1.1:*:*:*:*:*:*:*
|
| symantec | client_security | 1.1.1 | - | - |
cpe:2.3:a:symantec:client_security:1.1.1:*:*:*:*:*:*:*
|
| symantec | client_security | 1.1.1_mr1_build_8.1.1.314a | - | - |
cpe:2.3:a:symantec:client_security:1.1.1_mr1_build_8.1.1.314a:*:*:*:*:*:*:*
|
| symantec | client_security | 1.1.1_mr2_build_8.1.1.319 | - | - |
cpe:2.3:a:symantec:client_security:1.1.1_mr2_build_8.1.1.319:*:*:*:*:*:*:*
|
| symantec | client_security | 1.1.1_mr3_build_8.1.1.323 | - | - |
cpe:2.3:a:symantec:client_security:1.1.1_mr3_build_8.1.1.323:*:*:*:*:*:*:*
|
| symantec | client_security | 1.1.1_mr4_build_8.1.1.329 | - | - |
cpe:2.3:a:symantec:client_security:1.1.1_mr4_build_8.1.1.329:*:*:*:*:*:*:*
|
| symantec | client_security | 1.1.1_mr5_build_8.1.1.336 | - | - |
cpe:2.3:a:symantec:client_security:1.1.1_mr5_build_8.1.1.336:*:*:*:*:*:*:*
|
| symantec | client_security | 1.2 | - | - |
cpe:2.3:a:symantec:client_security:1.2:*:*:*:*:*:*:*
|
| symantec | client_security | 1.3 | - | - |
cpe:2.3:a:symantec:client_security:1.3:*:*:*:*:*:*:*
|
| symantec | client_security | 1.4 | - | - |
cpe:2.3:a:symantec:client_security:1.4:*:*:*:*:*:*:*
|
| symantec | client_security | 1.5 | - | - |
cpe:2.3:a:symantec:client_security:1.5:*:*:*:*:*:*:*
|
| symantec | client_security | 1.6 | - | - |
cpe:2.3:a:symantec:client_security:1.6:*:*:*:*:*:*:*
|
| symantec | client_security | 1.7 | - | - |
cpe:2.3:a:symantec:client_security:1.7:*:*:*:*:*:*:*
|
| symantec | client_security | 1.8 | - | - |
cpe:2.3:a:symantec:client_security:1.8:*:*:*:*:*:*:*
|
| symantec | client_security | 1.9 | - | - |
cpe:2.3:a:symantec:client_security:1.9:*:*:*:*:*:*:*
|
| symantec | client_security | 2.0 | - | - |
cpe:2.3:a:symantec:client_security:2.0:*:*:*:*:*:*:*
|
| symantec | client_security | 2.0.1 | - | - |
cpe:2.3:a:symantec:client_security:2.0.1:*:*:*:*:*:*:*
|
| symantec | client_security | 2.0.2 | - | - |
cpe:2.3:a:symantec:client_security:2.0.2:*:*:*:*:*:*:*
|
| symantec | client_security | 2.0.3 | - | - |
cpe:2.3:a:symantec:client_security:2.0.3:*:*:*:*:*:*:*
|
| symantec | client_security | 2.0.4 | - | - |
cpe:2.3:a:symantec:client_security:2.0.4:*:*:*:*:*:*:*
|
| symantec | norton_antivirus | 8.1 | - | - |
cpe:2.3:a:symantec:norton_antivirus:8.1:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 8.1.1.319 | - | - |
cpe:2.3:a:symantec:norton_antivirus:8.1.1.319:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 8.1.1.323 | - | - |
cpe:2.3:a:symantec:norton_antivirus:8.1.1.323:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 8.1.1.329 | - | - |
cpe:2.3:a:symantec:norton_antivirus:8.1.1.329:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 8.1.1_build8.1.1.314a | - | - |
cpe:2.3:a:symantec:norton_antivirus:8.1.1_build8.1.1.314a:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 9.0 | - | - |
cpe:2.3:a:symantec:norton_antivirus:9.0:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 9.0.1 | - | - |
cpe:2.3:a:symantec:norton_antivirus:9.0.1:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 9.0.1.1.1000 | - | - |
cpe:2.3:a:symantec:norton_antivirus:9.0.1.1.1000:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 9.0.1.1000 | - | - |
cpe:2.3:a:symantec:norton_antivirus:9.0.1.1000:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 9.0.2 | - | - |
cpe:2.3:a:symantec:norton_antivirus:9.0.2:*:corporate:*:*:*:*:*
|
| symantec | norton_antivirus | 9.0.4 | - | - |
cpe:2.3:a:symantec:norton_antivirus:9.0.4:*:corporate:*:*:*:*:*
|
解决方案
中文解决方案:
英文解决方案:
临时解决方案:
CVSS评分详情
AV:L/AC:L/Au:N/C:P/I:P/A:P
时间信息
利用信息
数据源详情
| 数据源 | 记录ID | 版本 | 提取时间 |
|---|---|---|---|
| CVE | cve_CVE-2006-4802 |
2025-11-11 15:17:45 | 2025-11-11 07:32:37 |
| NVD | nvd_CVE-2006-4802 |
2025-11-11 14:51:51 | 2025-11-11 07:41:22 |
| CNNVD | cnnvd_CNNVD-200609-242 |
2025-11-11 15:08:53 | 2025-11-11 07:49:10 |
版本与语言
安全公告
变更历史
查看详细变更
- vulnerability_type: 未提取 -> 授权问题
- cnnvd_id: 未提取 -> CNNVD-200609-242
- data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
查看详细变更
- cvss_score: 未提取 -> 4.6
- cvss_vector: NOT_EXTRACTED -> AV:L/AC:L/Au:N/C:P/I:P/A:P
- cvss_version: NOT_EXTRACTED -> 2.0
- affected_products_count: 0 -> 40
- data_sources: ['cve'] -> ['cve', 'nvd']