Symantec's Altiris Deployment Solution - Client/Server Authentication Bypass

A vulnerability has been identified in the software agent in the client that connects to the deployment server. It does not properly track the current authentication status of the server to which it connects and so can be tricked into accepting commands without verifying the authenticity of the server.