Symantec.Brightmail.AntiSpam.Deeply.Nested.Zip.File.DoS

2020-12-02 This signature was removed in version 16.972.

description-logoDescription

This indicates an attack attempt against a Denial of Service vulnerability in Symantec Brightmail AntiSpam.
The vulnerability is caused by an error when the software handles a specially crafted "ZIP" file.

affected-products-logoAffected Products

Symantec Mail Security 8200 Series Appliance
Symantec Brightmail Anti-Spam 6.0.2
Symantec Brightmail Anti-Spam 6.0.1

Impact logoImpact

Denial of Service.

recomended-action-logoRecommended Actions

Symantec has released Advisory SYM05-016 regarding this issue.
Symantec Brightmail Anti-Spam 6.0.2
Symantec patch157.zip
ftp://ftp.symantec.com/public/english_us_canada/products/sba/sba_60x/updates/

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2020-12-02 16.972
Removed