← Back

CVE-2007-1793

nvd nist
Published: Apr 2, 2007Modified: Apr 23, 2026

JSON object

Loading...
4.9
Vector
AV:L/AC:L/Au:N/C:N/I:N/A:C
Exploitability: 3.9 / Impact: 6.9
Source: NVD

Description

SPBBCDrv.sys in Symantec Norton Personal Firewall 2006 9.1.0.33 and 9.1.1.7 does not validate certain arguments before being passed to hooked SSDT function handlers, which allows local users to cause a denial of service (crash) or possibly execute arbitrary code via crafted arguments to the (1) NtCreateMutant and (2) NtOpenEvent functions. NOTE: it was later reported that Norton Internet Security 2008 15.0.0.60, and possibly other versions back to 2006, are also affected.

Affected (56)

8 products
Antivirus
Client Security
Norton 360
Norton Antispam
Norton Antivirus
Norton Internet Security
Norton Personal Firewall
Norton System Works
Configuration A
56 vulnerable
Vulnerable SoftwareAffected Versions
Symantec
Version 10.0.1.1
Version 10.0.1
Version 10.0.2.1
Version 10.0.2.2
Version 10.0.2
Version 10.0.3
Version 10.0.4
Version 10.0.5
Version 10.0.6
Version 10.0.7
Version 10.0.8
Version 10.0.9
Version 10.0
Symantec
Version 3.0.0.359
Version 3.0.1.1000
Version 3.0.1.1001
Version 3.0.1.1007
Version 3.0.1.1008
Version 3.0.1.1009
Version 3.0.2.2000
Version 3.0.2.2001
Version 3.0.2.2002
Version 3.0.2.2010
Version 3.0.2.2011
Version 3.0.2.2020
Version 3.0.2.2021
Version 3.0.2
Version 3.0
Version 3.1.0.396
Version 3.1.0.401
Version 3.1.394
Version 3.1.396
Version 3.1.400
Version 3.1.401
Version 3.1
Version 1.0
Symantec
Version 2004
Version 2005
Symantec
Version 2004
Version 2005
Version 2006
Version 2007
Version 2008
Symantec
Version 2004
Version 2005
Version 2006
Version 2007
Version 2008
Symantec
Version 2004
Version 2005
Version 2006
Version 2006_9.1.0.33
Version 2006_9.1.1.7
Symantec
Version 2004
Version 2005
Version 2006

References (34)

Source: cve@mitre.org
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Exploit
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.