CVE-2016-2208

The kernel component in Symantec Anti-Virus Engine (AVE) 20151.1 before 20151.1.1.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory access violation and system crash) via a malformed PE header file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:symantec:anti-virus_engine:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:48

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/90653 - () http://www.securityfocus.com/bid/90653 -
References () http://www.securitytracker.com/id/1035903 - () http://www.securitytracker.com/id/1035903 -
References () http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&suid=20160516_00 - Vendor Advisory () http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&suid=20160516_00 - Vendor Advisory
References () https://bugs.chromium.org/p/project-zero/issues/detail?id=820 - () https://bugs.chromium.org/p/project-zero/issues/detail?id=820 -
References () https://www.exploit-db.com/exploits/39835/ - () https://www.exploit-db.com/exploits/39835/ -

Information

Published : 2016-05-19 10:59

Updated : 2024-11-21 02:48


NVD link : CVE-2016-2208

Mitre link : CVE-2016-2208

CVE.ORG link : CVE-2016-2208


JSON object : View

Products Affected

symantec

  • anti-virus_engine
CWE
CWE-399

Resource Management Errors