WelcomeEnterpriseSmall BusinessHome & Home OfficePartnersAbout Symantec
October 28, 2004
Symantec NetRecon 3.6 Security Update 23

Description

Download Security Update 23 Release Notes (PDF)

Use the LiveUpdate feature of Symantec NetRecon 3.6 to download the security update.

Symantec NetRecon 3.6 Security Update 23 (SU 23) detects and reports 33 new vulnerabilities.


New vulnerabilities

  • Microsoft Internet Explorer Double Byte Character Set Handling Address Bar Spoofing
  • Microsoft Internet Explorer Function Pointer Override Cross-Domain Access Violation
  • Microsoft Internet Explorer Bitmap Processing Integer Overflow Vulnerability
  • Microsoft Internet Explorer Double-Null URI Denial Of Service Vulnerability
  • Microsoft Internet Explorer ExecCommand Cross-Domain Access Violation
  • Microsoft Internet Explorer Heartbeat ActiveX Control Unspecified Vulnerability
  • Microsoft Internet Explorer Implicit Drag and Drop File Installation
  • Microsoft Internet Explorer Install Engine ActiveX Control Buffer Overflow
  • Microsoft Internet Explorer Malformed GIF Double Free Code Execution
  • Microsoft Internet Explorer Method Caching Mouse Click Event Hijacking
  • Microsoft Internet Explorer Modal Dialog Zone Bypass Vulnerability
  • Microsoft Internet Explorer Mouse Click Event Hijacking Vulnerability
  • Microsoft Internet Explorer NavigateAndFind() Cross-Zone Policy Vulnerability
  • Microsoft Internet Explorer OBJECT Tag Buffer Overflow Vulnerability
  • Microsoft Internet Explorer Plug-in Navigations Handling Address Bar Spoofing
  • Microsoft Internet Explorer Popup.show Mouse Event Hijacking Vulnerability
  • Microsoft Internet Explorer Script URL Cross-Domain Access Violation
  • Microsoft Internet Explorer Secure Sockets Layer Caching Vulnerability
  • Microsoft Internet Explorer Style Tag Comment Memory Corruption Vulnerability
  • Microsoft Internet Explorer Unspecified showHelp Zone Bypass Vulnerability
  • Microsoft Internet Explorer window.open Media Bar Cross-Zone Scripting
  • Microsoft Internet Explorer XML Object Zone Restriction Bypass Vulnerability
  • Microsoft Outlook Express Malformed Email Header Denial Of Service
  • Microsoft Window Management API Local Privilege Escalation Vulnerability
  • Microsoft Windows Kernel Local Denial of Service Vulnerability
  • Microsoft Windows Kernel Virtual DOS Machine Privilege Escalation Vulnerability
  • Microsoft Windows Media Player Automatic File Download and Execution
  • Microsoft Windows Media Player IE Zone Access Control Bypass Vulnerability
  • Microsoft Windows NetDDE Remote Buffer Overflow Vulnerability
  • Microsoft Windows Program Group Converter Filename Local Buffer Overrun
  • Microsoft Windows Shell Long Share Name Buffer Overrun Vulnerability
  • Microsoft Windows WMF/EMF Image Format Rendering Remote Buffer Overflow
  • Multiple Microsoft Internet Explorer Script Execution Vulnerabilities


For vulnerability details, download the Security Update 23 Release Notes (PDF).


Last modified on: Monday, 01-Nov-04 10:01:39