On BNET: 6 cool reasons to search with bing
BNET Business Network:
BNET
TechRepublic
ZDNet

By Munir Kotadia
Posted on ZDNet News: Jan 13, 2004 6:33:00 PM

Security company Symantec, developer of the popular Norton AntiVirus software, fixed a problem in its LiveUpdate feature last week--a vulnerability that could allow malicious users to gain unauthorized administrator access rights to an affected PC.

LiveUpdate is a feature used by Symantec's customers to keep their virus signatures and security applications up to date. It can be set to automatically connect to the Internet and check Symantec's servers for a newer version. If one is found, the software can either prompt the user to download and install the update or automatically do these--the recommended setting.


Get Up to Speed on...
Enterprise security
Get the latest headlines and
company-specific news in our
expanded GUTS section.


According to Symantec, the problem only affects Microsoft Windows versions of its software and is rather obscure, requiring "a number of conditions" to be in place before it can be exploited. If an application has been set up in multiuser mode, with privileged and nonprivileged access rights, it is possible for a nonprivileged user to access and manipulate the Automatic LiveUpdate interface in order to gain privileged access to the host computer.

The vulnerability, which was discovered by U.S.-based consultants Secure Network Operations, was published on Tuesday, by which time Symantec had already fixed the problem by making a new version (2.0) of its LiveUpdate feature available for download.

Symantec said the latest version of the update engine will be "automatically installed on a user's machine as soon as the computer connects to the Internet." If automatic LiveUpdate has been disabled, users can still use LiveUpdate to download and install the 4MB patch as soon as possible.

This is the second embarrassing episode for Symantec in a matter of days. Last Friday, Symantec's support forums were flooded with Norton AntiVirus users that their computers were slow and unstable after they installed the latest signature updates.

ZDNet UK's Munir Kotadia reported from London.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 5 Talkback(s)
Symantec's product catalog file crashes too
Dear Friends,

I was once a loyal Norton customer
and I ran Disk Doctor almost every day
on Windows 98/SE. I added Norton
Internet Security Professional, and
one day their central p... (Read the rest)
Posted by: supremelawfirm Posted on: 01/07/05 You are currently: a Guest | | Terms of Use
glad i changed  Nullifidian | 01/13/04
be nice to have them  JWatson77 | 01/13/04
NOD32  DarbyOhara | 01/14/04
Symantec  Kevin_z | 05/13/04
Symantec's product catalog file crashes too  supremelawfirm | 01/07/05

What do you think?

SmartPlanet

  • Thought-provoking progressive ideas on diverse topics that intersect with technology, business, and life, and matter to the world at large. Visit SmartPlanet
  • More from IBM
  • Innovate your business' process model, play against the market, compete against others on our scoreboards and WIN! Try INNOV8 2.0: A BPM Simulator
  • Enabling Real-World Business Transformation through IBM Service Management Read the EMA Analyst Report
advertisement
Click Here