CVE-2007-0447
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD
Description
Heap-based buffer overflow in the Decomposer component in multiple Symantec products allows remote attackers to execute arbitrary code via multiple crafted CAB archives.
Affected (168)
Products: Symantec: Antivirus Scan Engine, Brightmail Antispam, Client Security, Mail Security, Norton Antivirus, Norton Internet Security, Norton Personal Firewall, Norton System Works, Symantec Antivirus Filtering +for Domino, Web Security, Gateway Security 5000 Series, Gateway Security 5400, Mail Security 8820 Appliance
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.0 | |
| Version 4.0 | |
| Version 2.0.1_build_9.0.1.1000 mr1 | |
| Version 4.0.1 | |
| All versions | |
| Version 2004 | |
| Version 2006 | |
| Version 2004 | |
| Version 3.0.12 | |
| Version 2.5 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 3.0.1 | |
| Version 2.0.1 | |
| All versions |
References (12)
Source: cve@mitre.org
Source: cve@mitre.org
Patch
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.