Show plain JSON{"containers": {"cna": {"affected": [{"product": "n/a", "vendor": "n/a", "versions": [{"status": "affected", "version": "n/a"}]}], "datePublic": "2006-09-13T00:00:00", "descriptions": [{"lang": "en", "value": "Multiple format string vulnerabilities in Symantec AntiVirus Corporate Edition 8.1 up to 10.0, and Client Security 1.x up to 3.0, allow local users to execute arbitrary code via format strings in (1) Tamper Protection and (2) Virus Alert Notification messages."}], "problemTypes": [{"descriptions": [{"description": "n/a", "lang": "en", "type": "text"}]}], "providerMetadata": {"dateUpdated": "2018-10-18T14:57:01", "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca", "shortName": "mitre"}, "references": [{"name": "1016842", "tags": ["vdb-entry", "x_refsource_SECTRACK"], "url": "http://securitytracker.com/id?1016842"}, {"name": "symantecantivirus-messages-code-execution(28936)", "tags": ["vdb-entry", "x_refsource_XF"], "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/28936"}, {"name": "20060914 Layered Defense Advisory :Symantec AntiVirus Corporate Edition Format String Vulnerability", "tags": ["mailing-list", "x_refsource_BUGTRAQ"], "url": "http://www.securityfocus.com/archive/1/446041/100/0/threaded"}, {"tags": ["x_refsource_MISC"], "url": "http://layereddefense.com/SAV13SEPT.html"}, {"name": "19986", "tags": ["vdb-entry", "x_refsource_BID"], "url": "http://www.securityfocus.com/bid/19986"}, {"name": "21884", "tags": ["third-party-advisory", "x_refsource_SECUNIA"], "url": "http://secunia.com/advisories/21884"}, {"tags": ["x_refsource_CONFIRM"], "url": "http://securityresponse.symantec.com/avcenter/security/Content/2006.09.13.html"}, {"name": "ADV-2006-3599", "tags": ["vdb-entry", "x_refsource_VUPEN"], "url": "http://www.vupen.com/english/advisories/2006/3599"}, {"name": "20060918 Symantec Security Advisory: Symantec AntiVirus Corporate Edition", "tags": ["mailing-list", "x_refsource_BUGTRAQ"], "url": "http://www.securityfocus.com/archive/1/446293/100/0/threaded"}], "x_legacyV4Record": {"CVE_data_meta": {"ASSIGNER": "cve@mitre.org", "ID": "CVE-2006-3454", "STATE": "PUBLIC"}, "affects": {"vendor": {"vendor_data": [{"product": {"product_data": [{"product_name": "n/a", "version": {"version_data": [{"version_value": "n/a"}]}}]}, "vendor_name": "n/a"}]}}, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": {"description_data": [{"lang": "eng", "value": "Multiple format string vulnerabilities in Symantec AntiVirus Corporate Edition 8.1 up to 10.0, and Client Security 1.x up to 3.0, allow local users to execute arbitrary code via format strings in (1) Tamper Protection and (2) Virus Alert Notification messages."}]}, "problemtype": {"problemtype_data": [{"description": [{"lang": "eng", "value": "n/a"}]}]}, "references": {"reference_data": [{"name": "1016842", "refsource": "SECTRACK", "url": "http://securitytracker.com/id?1016842"}, {"name": "symantecantivirus-messages-code-execution(28936)", "refsource": "XF", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/28936"}, {"name": "20060914 Layered Defense Advisory :Symantec AntiVirus Corporate Edition Format String Vulnerability", "refsource": "BUGTRAQ", "url": "http://www.securityfocus.com/archive/1/446041/100/0/threaded"}, {"name": "http://layereddefense.com/SAV13SEPT.html", "refsource": "MISC", "url": "http://layereddefense.com/SAV13SEPT.html"}, {"name": "19986", "refsource": "BID", "url": "http://www.securityfocus.com/bid/19986"}, {"name": "21884", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/21884"}, {"name": "http://securityresponse.symantec.com/avcenter/security/Content/2006.09.13.html", "refsource": "CONFIRM", "url": "http://securityresponse.symantec.com/avcenter/security/Content/2006.09.13.html"}, {"name": "ADV-2006-3599", "refsource": "VUPEN", "url": "http://www.vupen.com/english/advisories/2006/3599"}, {"name": "20060918 Symantec Security Advisory: Symantec AntiVirus Corporate Edition", "refsource": "BUGTRAQ", "url": "http://www.securityfocus.com/archive/1/446293/100/0/threaded"}]}}}, "adp": [{"providerMetadata": {"orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE", "dateUpdated": "2024-08-07T18:30:34.302Z"}, "title": "CVE Program Container", "references": [{"name": "1016842", "tags": ["vdb-entry", "x_refsource_SECTRACK", "x_transferred"], "url": "http://securitytracker.com/id?1016842"}, {"name": "symantecantivirus-messages-code-execution(28936)", "tags": ["vdb-entry", "x_refsource_XF", "x_transferred"], "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/28936"}, {"name": "20060914 Layered Defense Advisory :Symantec AntiVirus Corporate Edition Format String Vulnerability", "tags": ["mailing-list", "x_refsource_BUGTRAQ", "x_transferred"], "url": "http://www.securityfocus.com/archive/1/446041/100/0/threaded"}, {"tags": ["x_refsource_MISC", "x_transferred"], "url": "http://layereddefense.com/SAV13SEPT.html"}, {"name": "19986", "tags": ["vdb-entry", "x_refsource_BID", "x_transferred"], "url": "http://www.securityfocus.com/bid/19986"}, {"name": "21884", "tags": ["third-party-advisory", "x_refsource_SECUNIA", "x_transferred"], "url": "http://secunia.com/advisories/21884"}, {"tags": ["x_refsource_CONFIRM", "x_transferred"], "url": "http://securityresponse.symantec.com/avcenter/security/Content/2006.09.13.html"}, {"name": "ADV-2006-3599", "tags": ["vdb-entry", "x_refsource_VUPEN", "x_transferred"], "url": "http://www.vupen.com/english/advisories/2006/3599"}, {"name": "20060918 Symantec Security Advisory: Symantec AntiVirus Corporate Edition", "tags": ["mailing-list", "x_refsource_BUGTRAQ", "x_transferred"], "url": "http://www.securityfocus.com/archive/1/446293/100/0/threaded"}]}]}, "cveMetadata": {"assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca", "assignerShortName": "mitre", "cveId": "CVE-2006-3454", "datePublished": "2006-09-14T00:00:00", "dateReserved": "2006-07-07T00:00:00", "dateUpdated": "2024-08-07T18:30:34.302Z", "state": "PUBLISHED"}, "dataType": "CVE_RECORD", "dataVersion": "5.1"}