CVE-2012-0292

The awhost32 service in Symantec pcAnywhere through 12.5.3, Altiris IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), Altiris Client Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), and Altiris Deployment Solution Remote pcAnywhere Solution 7.1 (aka 12.5.x and 12.6.x) allows remote attackers to cause a denial of service (daemon crash) via a crafted TCP session on port 5631.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:symantec:pcanywhere:*:sp3:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:10.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:10.5:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:11.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:11.0.1:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:11.5:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:11.5.1:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.0.1:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.0.2:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.0.3:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.1:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.5:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.5:sp1:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.5:sp2:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.5.3:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.5.265:*:*:*:*:*:*:*
cpe:2.3:a:symantec:pcanywhere:12.5.539:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:symantec:altiris_client_management_suite_pcanywhere_solution:7.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_climentent_manage_suite_pcanywhere_solution:7.1:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution_remote_pcanywhere_solution:7.1:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_it_management_suite_pcanywhere_solution:7.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_it_management_suite_pcanywhere_solution:7.1:*:*:*:*:*:*:*

History

21 Nov 2024, 01:34

Type Values Removed Values Added
References () http://secunia.com/advisories/48092 - () http://secunia.com/advisories/48092 -
References () http://www.exploit-db.com/exploits/18493/ - Exploit () http://www.exploit-db.com/exploits/18493/ - Exploit
References () http://www.securityfocus.com/bid/52094 - Exploit () http://www.securityfocus.com/bid/52094 - Exploit
References () http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120301_00 - Vendor Advisory () http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120301_00 - Vendor Advisory

Information

Published : 2012-03-08 04:15

Updated : 2024-11-21 01:34


NVD link : CVE-2012-0292

Mitre link : CVE-2012-0292

CVE.ORG link : CVE-2012-0292


JSON object : View

Products Affected

symantec

  • altiris_it_management_suite_pcanywhere_solution
  • pcanywhere
  • altiris_deployment_solution_remote_pcanywhere_solution
  • altiris_client_management_suite_pcanywhere_solution
  • altiris_climentent_manage_suite_pcanywhere_solution
CWE
CWE-20

Improper Input Validation