OSVDB ID: 79412

Title: Symantec pcAnywhere awhost32 Service Unauthenticated Remote DoS

Info

Disclosure

Feb 16, 2012

Discovery

Unknown

Dates

Exploit

Feb 16, 2012

Solution

Jan 24, 2012

Description

Symantec pcAnywhere contains a flaw that may allow a remote denial of service. The issue is due to an error within the awhost32 service, which may allow a remote attacker to crash the service with malformed packets resulting in a loss of availability.

Classification

Location: Remote / Network Access
Attack Type: Denial of Service
Impact: Loss of Availability
Solution: Patch / RCS, Upgrade
Exploit: Exploit Public
Disclosure: Vendor Verified

Solution

Upgrade to version 12.5 SP4 or higher, as it has been reported to fix this vulnerability. In addition, the vendor has released a patch if you are currently unable to upgrade.

Products

Symantec Corporation

pcAnywhere

12.5 SP3

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/79412