Cyber Security Institute
§ Current Worries
Top 3 Worries
- Regulations
- Old Firewall Configurations
- Security Awareness
§ Listening
For the best information
- The underground
- Audible
- Executive Excellence
- Music (to keep me sane)
§ Watching
For early warnings
- 150 Security Websites
- AP Newsfeeds
- Vendors
Tuesday, May 30, 2006
Symantec squashes antivirus bug
Symantec Corp. has patched a widely reported flaw in the English versions of its corporate antivirus software. The flaw, which affects recent versions of its Client Security and Antivirus Corporate Edition products is considered serious, and could be exploited by hackers to run unauthorized software on unpatched PCs.
It was discovered by rival security vendor eEye Digital Security Inc. and first disclosed last Wednesday (See “Researchers find flaw in Symantec antivirus.”).
The patches are for English language versions of Symantec’s products only, and a Symantec spokesman could not say when the complete line of products would be patched.
Symantec did not release many details on the flaw, but eEye has warned that it is the kind of vulnerability that could be used to build a self-replicating worm attack, similar to the Blaster and Slammer outbreaks of 2003.