Record summary

CVE-2004-0375 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.

Description

SYMNDIS.SYS in Symantec Norton Internet Security 2003 and 2004, Norton Personal Firewall 2003 and 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 and 1.1 allow remote attackers to cause a denial of service (infinite loop) via a TCP packet with (1) SACK option or (2) Alternate Checksum Data option followed by a length of zero.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBSymantec Client Firewall Products 5 - 'SYMNDIS.SYS' Driver Remote Denial of ServiceExploitDB exploitby eEye Digital Security TeamNot analyzed1 file
ExploitDB

PoC details

References

9