Search:  

 
 
   News
newer
story category Symantec Flaws Found, Fixed
Some thirty-plus applications impacted
(old news - 12:41PM Thursday Feb 10 2005)
tags: security · software
It wasn't a particularly enjoyable week for Symantec, after a flaw was found in its anti-virus software that allowed the execution of viral code, instead of the capture of it. The majority of Symantec's antivirus and antispam products were impacted (some 30+), since they all rely on the same antivirus library. Symantec AV users should make sure they're updated.

Related:
  1. Update Your Browser, Dummy
  2. New Firefox Extension Thwarts MITM Attacks
  3. Friday Evening Links
  4. Monday Morning Links
  5. Firefox Add-On Simulates Great Firewall Of China
  6. Zone Alarm Pro Free Just For Today
  7. Microsoft Discontinuing OneCare
  8. Using PS3's To Forge Site Certificates
Forums » Symantec Flaws Found, Fixed
view: topics flat text 
Post a:

Heterman
Premium
join:2004-02-28
Fayetteville, AR

SAV Corp. 9.0

I have 9.0.1.1000. Looks like I didn't get affected.:)
Sunburn

join:2000-10-05
Denver, CO

Re: SAV Corp. 9.0

Sweet, thx for the info... I could have swore I just posted this question in this exact news forum :/ must have been deleted due to that first post stuff?

Karl Bode
News Guy
join:2000-03-02

Re: SAV Corp. 9.0

Yes. Sorry about that.
Samwoo

join:2002-02-15
Rancho Palos Verdes, CA
what about the scan engine...
Lets see mines is 1.4.0.11

Rob
In Deo speramus
Premium
join:2001-08-25
Kendall, FL

Away with Symantec...

I've been Norton free and have been using AVG and joy it. I have the PRO version and it has always located viruses for me. I 3 AVG.
Skippy25

join:2000-09-13
Hazelwood, MO

Re: Away with Symantec...

Then I guess you have no point or reason to post here then.

Geminimind
Premium
join:2003-12-20
Sacramento, CA
Same here avg is a good program. Symantec sucks. It freezes your computer,crashes and has way too many problems

KoolMoe
Aw Man
Premium
join:2001-02-14
Annapolis, MD
clubs:
·Verizon FIOS
·Speakeasy

no updates?

We use Symantec CE 9.0
The version listed in the clients is 9.0.0.338
But when I go to Symantec's site and select my version of SAV, it says "There are no update files available for download for Symantec AntiVirus Corporate Edition 9.0."
WTF?
So I have an email in to request the support number so I can find out where these apparently critical updates can be found.

Anyone have a clue? I'd sure appreciate it!
KM

SigEp1995

join:2000-11-17
Alumni Hall

Re: no updates?

How come you're not running Symantec CE 9.0.2? That's what we're running over here and I'm glad I had checked their site for new virus definitions yesterday. All of our machines are protected, except for those people who are on the road using laptops.
--
| Sigma Phi Epsilon | You like doggies? |

scots
Can we have Twinkies?
Premium
join:1999-12-06
Raleigh, NC
The latest version of SAV CE is 9.03.1000. If you have Platinum Support you can login at the Platinum site and download the whole install CD.

KoolMoe
Aw Man
Premium
join:2001-02-14
Annapolis, MD
clubs:
·Verizon FIOS
·Speakeasy

Re: no updates?

Yeap, found that out after a bit of a time on hold. I couldn't find a link to that 'special' support site anywhere. The phone rep told me where to go. Why I couldn't find a link to that page, I dunno...it's protected by your product serial...
Anyway, the dload is in progress (213mb!)

AV definitions are checked and updated daily. No patches have been applied previously to the default install since there were no security issues previously identified (that I was aware of anyway).

Anyway, problem solved.
KM
--
eLearning and Website Design | Need an LMS? | Need an LMS & eCommerce solution?

kruser
Premium
join:2002-06-01
Chesterfield, MO
clubs:
·AT&T Southwest

Re: no updates?

said by KoolMoe See Profile:

Yeap, found that out after a bit of a time on hold. I couldn't find a link to that 'special' support site anywhere. The phone rep told me where to go. Why I couldn't find a link to that page, I dunno...it's protected by your product serial...
Anyway, the dload is in progress (213mb!)

AV definitions are checked and updated daily. No patches have been applied previously to the default install since there were no security issues previously identified (that I was aware of anyway).

Anyway, problem solved.
KM
Just for info, They only offer 9.02.1000 for users with Gold support.
I've also read that many Platinum users also can't find 9.0.3.1000 but maybe symantec is giving them a bad link?

Gold users used to get patches and upgrades at the same time as Platinum users.

I'd imagine this is a "try to get them to upgrade support to Platinum" for more $$$ type thing.

Support would not or could not tell me when the 9.03.1000 would be available to Gold users.
9.02.1000 does not have the UPX vulnerability however but it would still be nice to get the latest version considering the cash we have invested in this product for the last several years.
Now, they don't even send me the new version on CD like in the past even though I have my preferences set to receive a physical CD. I also no longer get email or postal mail notifications from Symantec stating that a patch or update has been released for corporate version.
I usually find out from this site.

I think I'm about to look elsewhere for AV to run on our small network (under 75 users).

Sorry for the rant!

KoolMoe
Aw Man
Premium
join:2001-02-14
Annapolis, MD
clubs:
·Verizon FIOS
·Speakeasy

Re: no updates?

No, you're totally right.
My preferences are for update CDs as well, but apparently that's just not an option anymore. I asked on the phone and she said 'brand new versions you'll receive the CD, updates and patches you must download'.
That's fine, except the 213mb download is the whole program, not just a simple patch.

Now I have to worry about installing over old versions. I would prefer to uninstall and re-rollout to avoid any problems. On the other hand, a network unprotected for a couple hours? Yikes! I'd have to do it on the weekend with the router disconnected

We have Gold support, btw. I too am disappointed they're not emailing me with 'here's a link to the latest patch for your software'. Was an hour of time to track down the number, call, wait on hold, go through the process...
Lame.
KM
--
eLearning and Website Design | Need an LMS? | Need an LMS & eCommerce solution?

kruser
Premium
join:2002-06-01
Chesterfield, MO
clubs:
·AT&T Southwest

Re: no updates?

Yep, Symantec's communication or lack of is bothering me.

If they have officially stopped shipping physical products to Gold members then I feel that a letter or email would have been sent in the least.

How are Gold members supposed to find out about patches and program updates?

I guess I could switch everyone back to the home version and then they would at least get the program updates!

I checked today to see what would be involved in order to switch from Gold to Platinum when my current support runs out in a few months.
I was shocked - It was over $10,000!!
That is actually for the Enterprise version which includes SAVCE and mail Security for MS Exchange but I'd guess the cost is very similar for the SAVCE edition only.

I have fewer than 75 users so I guess I'm stuck with Gold if I choose to stay with Symantec.

Of course now Symantec has also bought Veritas which we use for backup!! Time will tell what they do with that one!

All and all, I have been happy with SAVCE but the company policies as of late often make me wonder why.

sbrook
Premium,Mod
join:2001-12-14
H0H 0H0
·Rogers Hi-Speed

Host:
Rogers
Bell Canada

Arghhhh

I first experienced Norton's wonderfully buggy software back with their system tools in 96 ... and then when I tried installing the AV product in 98. Never ... never ... never again. Both times, it took weeks to uninstall and clean up the damage these products did to my systems. Similarly with Macafee ...

NAV came preinstalled on my laptop and I cannot find a way to uninstall it. And it misses SO much.

I Am not surprised at this announcement.
Sunburn

join:2000-10-05
Denver, CO

Re: Arghhhh

I think a-lot of people enjoy the Symantec corporate version. It is nothing like the Norton retail package in terms of all the *rap that is on it... Give it a try sometime if you get bored.

roosta692002

@primus.ca

Re: Arghhhh

I've had tremendous success with Symantec Client Security 2.0. Plenty of workstations, in house and mobile that have never been compromised.

Dude
What Happens When I Do This
Premium
join:2000-11-20
Chicago, IL
clubs:

Re: Arghhhh

thanks for the heads up

sbrook
Premium,Mod
join:2001-12-14
H0H 0H0
But it's from the same people who gave us this bloatware that pollutes file structures, pollutes the registry, crashes systems. Do I trust it one inch? Not on your nellie!

avantare
Go Tribe

join:2000-02-16
Farmington, MI

8.00.9374?

I have version 8.00.9374 CE. Are we covered?

Chuck

Stem Bolt
Premium
join:2002-11-08
Cleveland, OH

Symantec Corporate Anti-virus fix

This info was posted on Slashdot.org in the comments section by a user with the name of 'Sethb(9355)'

»it.slashdot.org/it/05/02/10/1327···&tid=128

If you're running Corporate Edition, you won't be getting the patch via LiveUpdate. You need to call their tech support line with your serial number or contact/contract number, and they'll give you the information (FTP site and password) for obtaining the 9.0 MR3 update for SAV Corporate Edition. This updates the software to version 9.0.3.1000

Some of the earlier Maintenance Releases aren't vulnerable either, but MR3 is the newest. If you're still on vanilla 9.0.0.338, you need to update ASAP, the same applies if you're on the update revision that made SAV CE work with the Windows SP2 Security Control Panel, version 9.0.0.1400.

Since it's "Corporate Edition", Symantec assumes that you're managing these desktops and wants to control when you push patches to them, so now you get to do just that. The good news is that you can use the remote client installer to just lay the new version over the old one via the network (or push a new .msi file via Group Policy, or run the update in a login script). Make sure you upgrade your servers before doing the clients, Symantec (or at least the rep I talked to) suggests completely removing the server (via add/remove programs) and installing the new version, not merely doing an upate.

ssj4android
Redefining Reality

join:2002-04-14
Wyoming, MI

Any example exploits?

I want to see if my system is at risk.
Devistater

join:2004-02-13
Clovis, CA

AVG

I dunno but I didn't find my experiance with AVG very good. When I got hit with a trojan it didn't find it. I tried kaspersky and it found it right off. I've read comparisons that said AVG didn't find as much stuff and in my experiance its correct.

TehRealBleeder

@144.92.x.x

9.0.3.1000 available for Gold customers now

Per this site (fileconnect is usually how Gold customers download the new releases).

»service1.symantec.com/SUPPORT/ts···14431839

Funny, logged into FileConnect with a valid non-expired serial number, and it still isn't there !!!!!!!!!!!!!!!!!!!!!!
Forums » Symantec Flaws Found, Fixed


Friday, 09-Jan 06:30:38 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9 years online! © 1999-2009 dslreports.com.