Threat Explorer

The Threat Explorer is a comprehensive resource consumers can turn to for daily, accurate, up-to-date information on the latest threats, risks and vulnerabilities.

Vulnerabilities

Vulnerabilities are flaws in computer software that create weaknesses in the overall security of the system or network.

Advisories relating to Symantec products may be viewed here.

NameDetected
Microsoft DirectX SAMI File Parsing Stack Buffer Overfl...June 10, 2008
Microsoft Internet Explorer HTML Objects 'substringData...June 10, 2008
Microsoft Windows Bluetooth Stack Remote Code Execution...June 10, 2008
Microsoft Word RTF Malformed String Handling Memory Cor...May 13, 2008
Microsoft Jet DataBase Engine MDB File Parsing Remote B...May 13, 2008
Microsoft Project Resource Memory Allocation Remote Cod...April 8, 2008
Microsoft Internet Explorer Data Stream Handling Remote...April 8, 2008
Microsoft VBScript and JScript Scripting Engines Remote...April 8, 2008
Microsoft Excel Conditional Formatting Values Remote Co...March 11, 2008
Microsoft Office File Memory Corruption VulnerabilityMarch 11, 2008
Microsoft Excel Data Validation Record Remote Code Exec...March 11, 2008
Adobe Acrobat and Reader Multiple Arbitrary Code Execut...February 12, 2008
Microsoft Word Unspecified Memory Corruption Remote Cod...February 12, 2008
Microsoft Windows Vista DHCP Remote Denial Of Service V...February 12, 2008
Microsoft Visual FoxPro FPOLE.OCX ActiveX Control Arbit...February 12, 2008
Microsoft Excel Header Parsing Remote Code Execution Vu...January 16, 2008
Microsoft Windows TCP/IP IGMP MLD Remote Code Execution...January 8, 2008
Microsoft DirectX WAV and AVI File Parsing Remote Code ...December 11, 2007
Microsoft Windows Media Format Runtime ASF File Remote ...December 11, 2007
Apple QuickTime RTSP Response Header Content-Length Rem...November 25, 2007
Xunlei Thunder PPLAYER.DLL_1_WORK ActiveX Control Buffe...November 25, 2007
Microsoft Windows URI Handler Command Execution Vulnera...November 13, 2007
Microsoft Windows Recursive DNS Spoofing VulnerabilityNovember 13, 2007
RealPlayer ierpplug.dll ActiveX Control Playlist Name S...October 22, 2007
Microsoft Internet Explorer Script Error Handling Memor...October 9, 2007
Microsoft Windows Kodak Image Viewer Remote Code Execut...October 9, 2007
Microsoft Word Workspace Memory Corruption Remote Code ...October 9, 2007
Adobe Acrobat Mailto PDF File Command Execution Vulnera...September 20, 2007
BaoFeng Storm MPS.DLL ActiveX Control Multiple Remote B...September 13, 2007
Microsoft Agent agentdpv.dll ActiveX Control Malformed ...September 11, 2007
Microsoft MSN Messenger Video Conversation Buffer Overf...September 11, 2007
Trend Micro ServerProtect SPNTSVC.EXE Multiple Stack Bu...August 24, 2007
Microsoft Internet Explorer Vector Markup Language VGX....August 14, 2007
Microsoft XML Core Services Remote Code Execution Vulne...August 14, 2007
Microsoft Excel Worksheet Index Value Remote Code Execu...August 14, 2007
Microsoft Excel Workspace Designation Remote Code Execu...July 10, 2007
Microsoft Office Publisher Invalid Memory Reference Rem...July 10, 2007
Microsoft Excel Worksheet Remote Code Execution Vulnera...July 10, 2007
Microsoft Internet Explorer URLMON.DLL COM Object Insta...June 12, 2007
Microsoft Win32 API Parameter Validation Remote Code Ex...June 12, 2007
Microsoft Word RTF Parsing Remote Code Execution Vulner...May 8, 2007
Microsoft Word Array Remote Code Execution VulnerabilityMay 8, 2007
Microsoft Internet Explorer Property Method Remote Code...May 8, 2007
Microsoft Agent URI Processing Remote Code Execution Vu...April 10, 2007
Microsoft Windows Csrss HardError Messages Multiple Vul...April 10, 2007
Microsoft Windows Cursor And Icon ANI Format Handling R...March 29, 2007
Microsoft Word Malformed Drawing Object Arbitrary Code ...February 13, 2007
Microsoft MFC Embedded OLE Object Remote Code Execution...February 13, 2007
Microsoft Excel Opcode Handling Unspecified Remote Code...January 9, 2007
Microsoft Windows Vector Markup Language Buffer Overrun...January 9, 2007
Microsoft Internet Explorer DHTML Script Function Remot...December 12, 2006
Windows Media Player Remote ASF File Buffer Overflow Vu...December 12, 2006
Windows Media Player ASX PlayList File Heap Overflow Vu...December 12, 2006
Microsoft XML Core Service XMLHTTP ActiveX Control Remo...November 14, 2006
Microsoft Word Mail Merge Remote Code Execution Vulnera...October 10, 2006
Microsoft Excel Lotus 1-2-3 File Handling Remote Code E...October 10, 2006
Microsoft Excel DATETIME Remote Code Execution Vulnerab...October 10, 2006
Microsoft Office Smart Tag Remote Code Execution Vulner...October 10, 2006
Microsoft Internet Explorer Vector Markup Language Buff...September 19, 2006
Microsoft Publisher Font Parsing Remote Code Execution ...September 12, 2006
Microsoft Windows Server Service Remote Buffer Overflow...August 8, 2006
Microsoft Internet Explorer COM Object Instantiation Co...August 8, 2006
Microsoft Internet Explorer Chained Cascading Style She...August 8, 2006
Microsoft Internet Explorer HTML Layout and Positioning...August 8, 2006
Microsoft Windows MHTML URI Buffer Overflow VulnerabilityAugust 8, 2006
Microsoft Windows DHCP Client Service Remote Code Execu...July 11, 2006
Microsoft Windows Server Driver Mailslot Remote Heap Bu...July 11, 2006
Microsoft Windows Malformed ART Image Remote Code Execu...June 13, 2006
Microsoft Internet Explorer COM Object Instantiation Co...June 13, 2006
Microsoft Windows GDI WMF Handling Heap Overflow Vulner...June 13, 2006
Symantec Client Security and Symantec AntiVirus Elevati...May 25, 2006
Microsoft Exchange Server Calendar Remote Code Executio...May 9, 2006
Microsoft MDAC RDS.Dataspace ActiveX Control Remote Cod...April 11, 2006
Microsoft Internet Explorer CreateTextRange Remote Code...March 28, 2006
Microsoft Excel Malformed Range Memory Corruption Vulne...March 14, 2006
Apple Mac OS X Archive Metadata Command Execution Vulne...February 22, 2006
Microsoft Windows Media Player Bitmap Handling Buffer O...February 14, 2006
Microsoft Internet Explorer WMF Image Parsing Memory Co...February 14, 2006
Microsoft Outlook / Microsoft Exchange TNEF Decoding Re...January 10, 2006
Microsoft Windows Embedded Web Font Buffer Overflow Vul...January 10, 2006
Microsoft Windows Graphics Rendering Engine WMF SetAbor...January 3, 2006
Microsoft Internet Explorer JavaScript OnLoad Handler R...December 13, 2005
Cisco IPSec Unspecified IKE Traffic Denial Of Service V...November 14, 2005
Microsoft Windows Graphics Rendering Engine WMF/EMF For...November 8, 2005
Microsoft Windows Explorer Web View Script Injection Vu...October 11, 2005
Microsoft DirectX DirectShow AVI Processing Buffer Over...October 11, 2005
Cisco IOS Firewall Authentication Proxy Buffer Overflow...September 7, 2005
VERITAS Backup Exec for Windows Servers, VERITAS Backup...August 12, 2005
Microsoft Windows Print Spooler Buffer Overflow Vulnera...August 9, 2005
Microsoft Windows Plug and Play Buffer Overflow Vulnera...August 9, 2005
Microsoft Internet Explorer Web Folder Behaviors Cross-...August 9, 2005
Microsoft Windows Color Management Module ICC Profile B...July 12, 2005
Microsoft Internet Explorer Javaprxy.DLL COM Object Ins...July 12, 2005
Microsoft Windows HTML Help Remote Code Execution Vulne...June 14, 2005
Microsoft Incoming SMB Packet Validation Remote Buffer ...June 14, 2005
Microsoft Internet Explorer PNG Image Rendering Buffer ...June 14, 2005
Microsoft Windows Shell Remote Code Execution Vulnerabi...April 12, 2005
Microsoft Exchange Server SMTP Extended Verb Buffer Ove...April 12, 2005
Microsoft Windows Internet Protocol Validation Remote C...April 12, 2005
Microsoft MSN Messenger GIF Image Processing Remote Buf...April 12, 2005
Microsoft Office XP HTML Link Processing Remote Buffer ...February 8, 2005
Microsoft Windows Media Player Remote PNG Image Format ...February 8, 2005
Microsoft Windows Server Message Block Handlers Remote ...February 8, 2005
Apple ITunes Playlist Buffer Overflow VulnerabilityJanuary 11, 2005
Microsoft Windows HTML Help Control Cross-Zone Scriptin...January 11, 2005
Microsoft Windows LoadImage API Function Integer Overfl...January 11, 2005
Microsoft Windows DHCP Server Remote Buffer Overflow Vu...December 14, 2004
Microsoft Internet Explorer Malformed IFRAME Remote Buf...December 01, 2004
Microsoft ISA and Proxy Server Web Site Spoofing Vulner...November 09, 2004
Microsoft Windows Program Group Converter Filename Loca...October 12, 2004
Microsoft Windows Compressed (zipped) Folder Buffer Ove...October 12, 2004
Microsoft GDI+ Library JPEG Segment Length Integer Unde...September 14, 2004
Microsoft Exchange Outlook Web Access Script Injection ...August 10, 2004
Microsoft DirectX DirectPlay Remote Malformed Packet De...June 8, 2004
Microsoft Windows HSC DVD Driver Upgrade Code Execution...May 11, 2004
Multiple Vendor TCP Sequence Number Approximation Vulne...April 20, 2004
Summary of Symantec Safeguard Protection for Microsoft ...April 16, 2004
Microsoft Windows LSASS Buffer Overrun VulnerabilityApril 13, 2004
Outlook Express MHTML Forced File Execution VulnerabilityApril 13, 2004
Microsoft Windows Private Communications Transport Prot...April 13, 2004
Microsoft Windows WMF/EMF Image Formats Remote Buffer O...April 13, 2004
Microsoft MSN Messenger Information Disclosure Vulnerab...March 9, 2004
Microsoft Outlook Mailto Parameter Quoting Zone Bypass ...March 9, 2004
Microsoft Windows Media Services Remote Denial of Servi...March 9, 2004
Microsoft Windows ASN.1 Library Integer Handling Vulner...February 10, 2004
Microsoft Windows Internet Naming Service Buffer Overfl...February 10, 2004
Microsoft ISA Server 2000 H.323 Filter Remote Buffer Ov...January 13, 2004
Microsoft MDAC Function Broadcast Response Buffer Overr...January 13, 2004
Linux Kernel do_mremap Function Boundary Condition Vuln...January 5, 2004
Openwares.org Internet Explorer Patch Buffer Overflow V...December 23, 2003
RSync Daemon Mode Undisclosed Remote Heap Overflow Vuln...December 9, 2003
Yahoo! Messenger YAuto.DLL Open Buffer Overflow Vulnera...December 9, 2003
Microsoft Windows Workstation Service Remote Buffer Ove...November 11, 2003
Microsoft Internet Explorer Self Executing HTML Arbitra...November 10, 2003
Atrium Software Mercur Mailserver POP3 AUTH Remote Buff...November 3, 2003
Microsoft Messenger Service Buffer Overrun VulnerabilityOctober 16, 2003
Microsoft Exchange Server Buffer Overflow VulnerabilityOctober 16, 2003
Microsoft Windows RPCSS Multi-thread Race Condition Vul...October 13, 2003
OpenSSL ASN.1 Parsing VulnerabilitiesOctober 6, 2003
Sun Solaris SAdmin Client Credentials Remote Administra...September 16, 2003
Multiple Microsoft RPC DCOM Subsystem VulnerabilitiesSeptember 10, 2003
Pam_SMB Remote Buffer Overflow VulnerabilitySeptember 2, 2003
Microsoft Data Access Components ODBC Buffer Overflow V...August 26, 2003
Multiple Oracle XDB FTP / HTTP Services Buffer Overflow...August 11, 2003
Microsoft Windows DCOM RPC Interface Buffer Overrun Vul...July 16, 2003
Cisco IOS Malicious IPV4 Packet Sequence Denial Of Serv...July 16, 2003
University of Minnesota Gopherd GSisText Buffer Overflo...July 14, 2003
CCBill WhereAmI.CGI Remote Arbitrary Command Execution ...July 3, 2003
InterSystems Cache Insecure Default Permissions Vulnera...July 1, 2003
Microsoft Windows Media Services NSIISlog.DLL Remote Bu...June 25, 2003
Symantec Security Check ActiveX Buffer OverflowJune 25, 2003
Multiple Sun Database Functions Buffer Overflow Vulnera...June 23, 2003
PMachine Lib.Inc.PHP Remote Include Command Execution V...June 16, 2003
Sun Management Center Change Manager PamVerifier Buffer...June 2, 2003
FastTrack P2P Supernode Packet Handler Buffer Overflow ...May 27, 2003
IBM AIX Multiple Unspecified Security VulnerabilitiesMay 19, 2003
Internet Explorer file:// Request Zone Bypass Vulnerabi...May 12, 2003
Apache Mod_Auth_Any Remote Command Execution VulnerabilityMay 5, 2003
Cisco CatOS Authentication Bypass VulnerabilityApril 28, 2003
Snort TCP Packet Reassembly Integer Overflow VulnerabilityApril 21, 2003
Oracle E-Business Suite RRA/FNDFS Arbitrary File Disclo...April 14, 2003
Samba Multiple Unspecified Remote Buffer Overflow Vulne...April 7, 2003
Sendmail Address Prescan Memory Corruption VulnerabilityMarch 31, 2003
Sun XDR Library xdrmem_getbytes() Integer Overflow Vuln...March 24, 2003
Microsoft Windows 2000 WebDAV / ntdll.dll Buffer Overfl...March 17, 2003
Samba SMB/CIFS Packet Assembling Buffer Overflow Vulner...March 17, 2003
Sendmail Header Processing Buffer Overflow VulnerabilityMarch 3, 2003
Cisco IOS OSPF Neighbor Buffer Overflow VulnerabilityFebruary 26, 2003
IBM Lotus Domino HTTP Redirect Buffer Overflow Vulnerab...February 18, 2003
Opera Cross Domain Scripting VulnerabilityFebruary 10, 2003
Microsoft Windows Locator Service Buffer Overflow Vulne...January 27, 2003
ISC DHCPD NSUPDATE MiniRes Library Remote Buffer Overfl...January 21, 2003
Half-Life Client Server Message Format String Vulnerabi...January 20, 2003
Longshine Wireless Access Point Devices Information Dis...January 13, 2003
Perl-HTTPd File Disclosure VulnerabilityJanuary 6, 2003
Microsoft Internet Explorer PNG Deflate Heap Corruption...December 16, 2002
Cobalt RaQ4 Administrative Interface Command Execution ...December 9, 2002
Lib CGI Include Buffer Overflow VulnerabilityDecember 2, 2002
Microsoft Data Access Components RDS Buffer Overflow Vu...November 20, 2002
TCPDump / LIBPCap Trojan Horse VulnerabilityNovember 18, 2002
Macromedia JRun Oversized URI Buffer Overflow Vulnerabi...November 11, 2002
Multiple Microsoft IIS VulnerabilitiesNovember 4, 2002
Multiple Vendor kadmind Remote Buffer Overflow Vulnerab...October 28, 2002
Linux-HA Heartbeat Remote Buffer Overflow VulnerabilityOctober 21, 2002
Sendmail Trojan Horse VulnerabilityOctober 14, 2002
Multiple Microsoft SQL Server VulnerabilitiesOctober 7, 2002
Multiple OpenVMS WASD HTTP Server VulnerabilitiesSeptember 30, 2002
Microsoft Virtual Machine Multiple JDBC VulnerabilitiesSeptember 23, 2002
Apache_mod_ssl Worm AlertSeptember 13, 2002
Multiple Cisco VPN 3000 VulnerabilitiesSeptember 9, 2002
Microsoft Terminal Services Advanced Client buffer over...September 3, 2002
Microsoft File Transfer Manager ActiveX Control Buffer ...August 28, 2002
Microsoft Content Management Server flaws allow system ...August 19, 2002
Microsoft SQL Server MDAC Buffer Overflow CompromiseAugust 11, 2002
Microsoft SQL Server Resolution Service buffer overflow...August 5, 2002
PHP multipart/form-data POST parsing error allows arbit...July 22, 2002
Sun ONE (iPlanet) Web Server search buffer overflow all...July 15, 2002
OpenSSH daemon challenge-response allows DoS or remote ...July 9, 2002
Apache HTTP Server chunk encoding stack overflowJune 18, 2002
Microsoft IIS HTR Chunked Encoding heap overflow allows...June 17, 2002
Microsoft Windows RAS phonebook buffer overflow allows ...June 17, 2002
ISC Bind 9.x vulnerability allows Domain Name Server De...June 6, 2002
Sun Solaris SNMP components allows remote execution of ...June 4, 2002
Microsoft Exchange Server 2000 Store Service allows DoSJune 3, 2002
RedHat sharutils package uudecode flaw allows elevated ...May 20, 2002
MSN Chat Control buffer overflow allows remote code exe...May 9, 2002
Sun Solaris admintool buffer overflow in PRODVERS argum...May 6, 2002
Multiple Vulnerabilities Discovered In Microsoft Intern...April 11, 2002
CiscoSecure ACS flaw allows arbitrary code executionApril 4, 2002
Microsoft SQL Server Extended Procedure Function Buffer...March 28, 2002
Zlib compression library double free bug could allow ar...March 11, 2002
Microsoft Virtual Machine multiple flaws allow maliciou...March 4, 2002
Multiple Buffer Overflows in PHP allow remote access to...February 28, 2002
Microsoft Commerce Server 2000 Unchecked Buffer in Auth...February 21, 2002
Multiple SNMP vulnerabilities in multiple productsFebruary 13, 2002
ISS BlackICE ping flood buffer overflow allows code exe...February 4, 2002
CDE dtspcd Buffer OverflowJanuary 29, 2002
Linux rsync I/O errors allow DoS or root accessJanuary 25, 2002
Symantec Enterprise Security Solutions check for suscep...December 20, 2001
Buffer Overflow in System V Derived LoginDecember 14, 2001
Malformed Microsoft Excel or PowerPoint documents bypas...October 4, 2001
Multi-vendor Unicode IDS bypassSeptember 7, 2001
Update: Symantec Customer Security Advisory for the Cod...July 31, 2001
Symantec Enterprise Security Solutions protect against ...June 20, 2001
Symantec Enterprise Security Solutions protect against ...May 11, 2001
Symantec Enterprise Security Solutions protect against ...May 2, 2001
Increased Risk in China/US Hacking ActivityApril 30, 2001
Incorrect Mime Header Vulnerability (MSIE)April 13, 2001
Lion worm and its propagation methods are detected and ...March 26, 2001
Fraudulent Digital Certificate (Verisign)March 24, 2001
Symantec security products address BIND vulnerabilities.February 13, 2001
Lotus Domino Denial of Service Malformed HTML EmailFebruary 8, 2001
Ramen WORM propagation methods are detected by Symantec...January 24, 2001
How Symantec Addresses Microsoft CompromiseOctober 31, 2000
Widespread Exploitation of Common Linux Vulnerabilities...October 19, 2000
 
*For continued protection, make sure that your Symantec subscription and/or license are up to date.