peter bassill · operator
$ cve CVE-2004-0445 JSON

CVE-2004-0445 EXPLOIT

2.6
LOW · CVSS 2.0 · EPSS 11% (pctl 96)

Patch early

A public exploit exists.

Description

The SYMDNS.SYS driver in Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 through 2.0 allows remote attackers to cause a denial of service (CPU consumption from infinite loop) via a DNS response with a compressed name pointer that points to itself.

Scoring

CVSS2.6 (LOW, v2.0)
VectorAV:N/AC:H/Au:N/C:N/I:N/A:P
EPSS11.05% — more likely to be exploited than 96% of all CVEs
On CISA KEVno
Public exploityes
Published2004-07-07
Last modified2026-06-16

Affected (5)

VendorProduct
symantecclient firewall
symantecclient security
symantecnorton antispam
symantecnorton internet security
symantecnorton personal firewall

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD