WelcomeEnterpriseSmall BusinessHome & Home OfficePartnersAbout Symantec
March 23, 2006
Symantec Gateway Security 5000 Series 3.0 Security Update 15

Description

Use the LiveUpdate feature of Symantec Gateway Security to download the security update.


Symantec Gateway Security 5000 Series 3.0 SU 15 adds coverage for the following vulnerabilities and threats:

  • Apple Quicktime MOV Integer Overflow
  • AwStats Logfile Input Validation Vul
  • Axis Network Remote Command Exec
  • BazookaBar InstallationFile Request
  • Bazookabar Update Request
  • Berlios GPSD Format String
  • Biborb Directory Traversal
  • Computer Associates License GCR BO
  • Computer Associates License GetConfig BO
  • DogPile Installation File Request
  • Dogpile Reporting Information
  • HTTP Internet Software Science SQL Inj.
  • HTTP Jammail Jammail.pl Cmd Execution
  • HTTP K-COLLECT csv_db.cgi Cmd. Exec
  • HTTP PHPBB Viewtopic Cmd. Exec
  • HTTP PHPMyFAQ Directory Traversal
  • HTTP RealPlayer Error Msg Format String
  • HTTP Remote File Include (MediaWiki)
  • HTTP Remote File Include (SIRGNU)
  • HTTP SalesLogix SQL Injection
  • IMAP LIST Command Buffer Overflow
  • INL Ulog-PHP Sql Injection
  • InvisionBoard SQL Injection
  • IPSwitch SMTP Format String BO
  • IPSwitch Whatsup Server Dir. Traversal
  • Linpha SQL Injection (HTTP)
  • Marketdart Redirect File Download
  • MediaWiki Language Option PHP Code Exec
  • Megasearchbar Configuration Request
  • Megasearchbar InstallationFile Request
  • Mercantec Softcart URI BO
  • MSRPC Svcctl ChangeConfigService Req.
  • MySQL Func Table Arbitrary Lib Injection
  • Novell Zen Works Patch Mgmt. SQL Inj.
  • OpenConnect Directory Traversal
  • SalesLogix File Upload Dir. Traversal
  • Singapore Gallery Directory Traversal
  • SMB Guest Login
  • Snort BackOrifice Preprocessor BO
  • Squid WCCP Parsing Denial of Service
  • WeHelpBus Remote Command Exec
  • Windows Media Player BMP Heap Overflow
  • WinMail Directory Traversal
  • WordPress SQL Injection (HTTP)
  • WVTFTP Blksize Length Remote BO

Symantec Gateway Security 5000 Series 3.0 SU 15 provides updated coverage for the following vulnerabilities and threats:

  • BD Dark Connection 1.2
  • BDE DNS Request
  • Begin2Search DNS Request
  • Blazefind DNS Request
  • BroadcastPC DNS Request
  • Clearsearch DNS Request
  • DNS NXT BO
  • DWARE DNS Request
  • Ebates Moemoney DNS Request
  • Favoriteman DNS Request
  • FTP GD Graphics PngLib BO
  • Gaobot Autostart and Service Commands
  • Gaobot Bot Logout Command
  • Gaobot DDOS commands
  • Gaobot Generic Bot Commands
  • Gaobot Harvest Mail and Keys Command
  • Gaobot Redirect Commands
  • Gaobot Variable Config Commands
  • Goidr DNS Request
  • GTP V0(U) SymbOS.Commwarrior Worm File
  • GTP V1(U) SymbOS.Commwarrior Worm File
  • GTP Ver0 Tunneling Over GTP
  • GTP Ver1 Long Tunneling Over GTP
  • GTP Ver1 Short Tunneling Over GTP
  • Hotbar Installation & Upgrade Activity
  • HP Instant TopTools DoS
  • HTTP A1Stats CGI Dir Traversal
  • HTTP CGI Count BO
  • HTTP Chunked Encoding Negative Length BO
  • HTTP Cobalt RAQ Service.cgi BO
  • HTTP EzMeeting BO
  • HTTP GD Graphics PngLib BO
  • HTTP IE Object Type Validation
  • HTTP IIS CMDExecution Access (2)
  • HTTP IIS HTR ISAPI BO
  • HTTP IIS ISAPI Printer BO
  • HTTP IIS WebDAV PROPFIND Overflow
  • HTTP IIS Welchia WebDAV SEARCH BO (2)
  • HTTP IRIX Pfdispaly.cgi Cmd Exec.
  • HTTP Lastlines.cgi Dir. Recursion
  • HTTP Lastlines.cgi Remote Code Exec
  • HTTP Macromedia Dreamweaver DB Access
  • HTTP MediaHouse BO
  • HTTP MS IE COM Object Misuse
  • HTTP MS IIS Chunk Encoding Heap BO
  • HTTP MS IIS Dbl Byte Code Disclosure
  • HTTP MS IIS FTP Wildcard DoS
  • HTTP MS Javaprxy DLL BO
  • HTTP MS JET Remote Code Execution
  • HTTP MS Media Services BO
  • HTTP MS showhelp CHM Download Attempt
  • HTTP MS Windows MSHTA Shell Execution
  • HTTP MS Windows WMF Code Exec
  • HTTP Negative Content Length
  • HTTP Nombas ScriptEase Dir. Recursion
  • HTTP SambarSrv Info. Disclosure
  • HTTP Sdbsearch.cgi Command Exec.
  • HTTP Technote Parameter File Disclosure
  • HTTP textcounter.pl Cmd Execution
  • HTTP ttCMS/Forum Remote File Inc.
  • HTTP vBulletin PHP Cmd. Exec.
  • HTTP WebWho+ Remote Cmd Exec
  • Huntbar DNS Request
  • IEFeats DNS Request
  • IGetNet DNS Request
  • ISearch DNS Request
  • ISO-SP Oversized CN Parameter
  • ISO-TP0 Invalid TPDU User Data Size
  • ISO-TP0 Oversized Transport Selector ID
  • ISO-TP0 Unknown Transport Code
  • LinkMaker DNS Request
  • MediaTicket DNS Request
  • MemoryMeter DNS Request
  • MS XP Help Center HCP Request
  • MyWay Buttons Request
  • NFS GD Graphics PngLib BO
  • P2PNetworking JoltID DNS Request
  • Phatbot OS Shutdown Commands
  • Phatbot Process Control Commands
  • Phatbot Scan Commands
  • PowerScan DNS Request
  • Qoolaid DNS Request
  • Quadro DNS Request
  • QuickSearch DNS Request
  • R(X)BOT Advanced-Scan Commands
  • R(X)BOT Bot Scan Commands
  • R(X)Bot Clone Commands
  • R(X)Bot DDOS Commands
  • R(X)BOT Keylog Commands
  • R(X)Bot Nick and Kill Thread Commands
  • R(X)BOT Videocapture Commands
  • RFC1006 Invalid Vers/Res Fld Value (A)
  • ShopAtHome Agent Preferences
  • SmartPops DNS Request
  • SMTP MS Exchange XEXCH50 BO
  • SOCKS4 Long User/Hostname BO
  • SpyBot Keylogger Commands
  • SpyBot Spy Commands
  • StatBlaster DNS Request
  • Superspider DNSLookup Request
  • Targetsaver DNS Request
  • TCP MODBUS - Illegal Packet Size
  • TopSearch DNS Request
  • VirtuMonde DNS Request
  • Webfroot Shoutbox Remote File Include
  • WebHancer DNS Request
  • Webrebate DNS Request
  • WildMedia WinFetch DNS Request
  • Windupdates DNS Request
  • WinFavorite DNS Request
  • Winpup DNS Request
  • Yahoo IM Activex yauto.dll BO

Initial Post on: Tuesday, 23-Mar-06 13:10:00
Last modified on: Thursday, 23-Mar-06 21:10:54