Skip to main content

Symantec pcAnywhere Denial of Service Vulnerability

Last Update Date: 23 Feb 2012 10:21 Release Date: 23 Feb 2012 4536 Views

RISK: Extremely High Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

A vulnerability has been identified in Symantec pcAnywhere, which can be exploited to cause denial of service conditions.

 

A remote user can send specially crafted data to TCP port 5631 to cause the target awhost32 service to crash.

 

Note:

  1. Vendor supplied patch is not available.
  2. Exploit code is publicly available.

Impact

  • Denial of Service

System / Technologies affected

  • Version 12.5.0 build 463 and prior versions

Solutions

  • Note: Vendor supplied patch is not available.
  • Workaround: Restrict access to trusted hosts only.

Vulnerability Identifier

  • No CVE information is available

Source


Related Link