CVE-2005-1346

UnknownEPSS 1.49%

Last modified

CVE-2005-1346 is a vulnerability of currently unknown severity. Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domino NT 3.1.1.87, and Mail Security for Exchange 4.5.4.743, when running on Windows, allows remote attackers to cause a denial of service (component crash) and avoid detection via a crafted RAR file.. EPSS estimates a 1.49% chance of exploitation in the next 30 days.

Description

Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domino NT 3.1.1.87, and Mail Security for Exchange 4.5.4.743, when running on Windows, allows remote attackers to cause a denial of service (component crash) and avoid detection via a crafted RAR file.

Metrics

EPSS Probability
1.49%

70.9th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
SymantecAntivirus Scan Engine4.3.7.27
SymantecMail Security4.0.5.66
SymantecMail Security4.5.4.743
SymantecNorton Antivirus2005_11.0.0
SymantecNorton Internet Security2005_contains_nav_11.0.0
SymantecNorton System Works2005_contains_nav_11.0.0
SymantecSymav Filter Domino Nt3.1.1.87
SymantecWeb Security3.0.1.72

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2005-1346?
Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domino NT 3.1.1.87, and Mail Security for Exchange 4.5.4.743, when running on Windows, allows remote attackers to cause a denial of service (component crash) and avoid detection via a crafted RAR file.
How severe is CVE-2005-1346?
Severity scoring for CVE-2005-1346 is pending analysis. The EPSS model estimates a 1.49% probability of exploitation in the next 30 days.
How do I fix CVE-2005-1346?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2005-1346?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST