← All CVEs

CVE-2004-0445

low · 2.6

The SYMDNS.SYS driver in Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 through 2.0 allows remote attackers to cause a denial of service (CPU consumption from infinite loop) via a DNS response with a compressed name pointer that points to itself.

2.6
CVSS
11.0%
EPSS (exploit prob.)
96th
EPSS percentile
2004-07-07
Published

AV:N/AC:H/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
symantecclient_firewall5.01
symantecclient_firewall5.1.1
symantecclient_security1.0
symantecclient_security1.1
symantecclient_security1.2
symantecclient_security1.3
symantecclient_security1.4
symantecclient_security1.5
symantecclient_security1.6
symantecclient_security1.7
symantecclient_security1.8
symantecclient_security1.9
symantecclient_security2.0
symantecnorton_antispam2004
symantecnorton_internet_security2002
symantecnorton_internet_security2002
symantecnorton_internet_security2003
symantecnorton_internet_security2003
symantecnorton_internet_security2004
symantecnorton_internet_security2004
symantecnorton_personal_firewall2002
symantecnorton_personal_firewall2003
symantecnorton_personal_firewall2004

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-0445