[77836] in North American Network Operators' Group
Re: Symantec AV may execute viruses
daemon@ATHENA.MIT.EDU (Paul G)
Thu Feb 10 13:33:51 2005
From: "Paul G" <paul@rusko.us>
To: <nanog@merit.edu>
Date: Thu, 10 Feb 2005 13:29:51 -0500
Errors-To: owner-nanog-outgoing@merit.edu
----- Original Message -----
From: "Jeff Wheeler" <jwheeler@usip.org>
To: "Colin Johnston" <colinj@mx5.org.uk>
Cc: <nanog@merit.edu>
Sent: Thursday, February 10, 2005 1:18 PM
Subject: Re: Symantec AV may execute viruses
>
> Also, it doesn't appear that this issue effects the Mac software (at
> least, I didn't see the Mac products in the Symantec vulnerability
> list), only Windows products.
if this is a heap overflow and if osx uses a bsd-derived libc (with phy
malloc implementation), the vulnerability would not be exploitable. this
seems like a probable explanation.
-p
---
paul galynin