CVE-2008-0308

Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows remote attackers to cause a denial of service (memory consumption) via a malformed RAR file to the Internet Content Adaptation Protocol (ICAP) port (1344/tcp).
Severity
UNKNOWN
AV:N/AC:M/Au:N/C:N/I:N/A:C
Atk. Vector
NETWORK
Atk. Complexity
MEDIUM
Base Score
CVSS 3.x
EPSS Score
Percentile: 86%
VendorProductVersion
symantecscan_engine
𝑥
≤ 5.1.4.24
symantecsymantec_antivirus_clearswift
𝑥
≤ 4.3.16.39
symantecsymantec_antivirus_filtering_domino_mpe
𝑥
≤ 3.0.12
symantecsymantec_antivirus_filtering_domino_mpe
𝑥
≤ 3.0.12
symantecsymantec_antivirus_filtering_domino_mpe
𝑥
≤ 3.0.12
symantecsymantec_antivirus_messaging
𝑥
≤ 4.3.16.39
symantecsymantec_antivirus_microsoft_sharepoint
𝑥
≤ 4.3.16.39
symantecsymantec_antivirus_ms_isa
𝑥
≤ 4.3.16.39
symantecsymantec_antivirus_network_attached_storage
𝑥
≤ 4.3.16.39
symantecsymantec_antivirus_scan_engine
𝑥
≤ 4.3.16.39
symantecsymantec_antivirus_scan_engine_caching
𝑥
≤ 4.3.16.39
symantecsymantec_mail_security_exchange
𝑥
≤ 4.6.5.12
symantecsymantec_mail_security_exchange
𝑥
≤ 5.0.4.363
𝑥
= Vulnerable software versions
Common Weakness Enumeration