← Back

CVE-2007-3771

nvd nist
Published: Jul 15, 2007Modified: Apr 23, 2026

JSON object

Loading...
4.6
Vector
AV:L/AC:L/Au:S/C:N/I:N/A:C
Exploitability: 3.1 / Impact: 6.9
Source: NVD

Description

Stack-based buffer overflow in the Internet E-mail Auto-Protect feature in Symantec AntiVirus Corporate Edition before 10.1, and Client Security before 3.1, allows local users to cause a denial of service (service crash) via a long (1) To, (2) From, or (3) Subject header in an outbound SMTP e-mail message. NOTE: the original vendor advisory referenced CVE-2006-3456, but this was an error.

Affected (32)

2 products
Client Security
Norton Antivirus
Configuration A
32 vulnerable
Vulnerable SoftwareAffected Versions
Symantec
Version 2.0
Version 3.0.1.1000
Version 3.0.1.1007
Version 3.0.1.1009
Version 3.0.2.2000
Version 3.0.2.2001
Version 3.0.2.2002
Version 3.0.2.2011
Version 3.0.2.2021
Version 3.0.2
Version 3.0
Symantec
Version 10.0.1.1000
Version 10.0.1.1007
Version 10.0.2.2000
Version 10.0.2.2001
Version 10.0.2.2002
Version 10.0.2.2010
Version 10.0.2.2011
Version 10.0.2.2020
Version 10.0.2.2021
Version 10.0
Version 9.0.0.338
Version 9.0.1.1.1000
Version 9.0.1.1000
Version 9.0.1
Version 9.0.2.1000
Version 9.0.2
Version 9.0.3.1000
Version 9.0.4
Version 9.0.5.1100
Version 9.0.5
Version 9.0

References (16)

Source: cve@mitre.org
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.