CVE-2006-1836

Symantec LiveUpdate for Macintosh <3.5.0 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Untrusted search path vulnerability in unspecified components in Symantec LiveUpdate for Macintosh 3.0.0 through 3.5.0 do not set the execution path, which allows local users to gain privileges via a Trojan horse program.

References (8)

Core 8
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/100
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17571
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/1386
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/431318/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1015953
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/19682
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/25839

Scores

EPSS 0.0006
EPSS Percentile 18.7%

Details

Status published
Products (18)
symantec/liveupdate 3.0
symantec/liveupdate 3.0.1
symantec/liveupdate 3.0.2
symantec/liveupdate 3.0.3
symantec/liveupdate 3.5
symantec/norton_antivirus 9.0.0
symantec/norton_antivirus 9.0.1
symantec/norton_antivirus 9.0.2
symantec/norton_antivirus 9.0.3
symantec/norton_antivirus 10.0
... and 8 more
Published Apr 19, 2006
Tracked Since Feb 18, 2026