Symantec Client Firewall NetBIOS Name Service Response Buffer Overflow Vulnerability

It has been reported that Symantec Client Firewall products may be prone to a remote buffer overflow vulnerability when processing NetBIOS Name Service responses. As a result, an attacker on a local network could respond to a NetBIOS Name Service query from a client and send a malformed response in return that overflows a vulnerable buffer.

A successful attack could allow an attacker to gain SYSTEM level privileges on a vulnerable system.


 

Privacy Statement
Copyright 2010, SecurityFocus