PT-2007-2870 · Symantec · Symantec Antivirus Corporate Edition+2

Publicado

2007-03-16

·

Atualizado

2018-10-16

·

CVE-2007-1476

CVSS v2.0

1.9

Baixa

VetorAV:L/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Symantec Norton Personal Firewall versions 9.1.1.7 and earlier Symantec Internet Security versions 2005 and 2006 Symantec AntiVirus Corporate Edition versions 3.0.x through 10.1.x
Description The issue allows local users to cause a denial of service, resulting in a system crash, by sending crafted data to the SymTDI device driver's Device file. This triggers invalid memory access.
Recommendations For Symantec Norton Personal Firewall versions 9.1.1.7 and earlier, update to a version later than 9.1.1.7. For Symantec Internet Security versions 2005 and 2006, update to a version later than 2006. For Symantec AntiVirus Corporate Edition versions 3.0.x through 10.1.x, update to a version later than 10.1.x.

Exploit

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-1476

Produtos afetados

Symantec Antivirus Corporate Edition
Symantec Internet Security
Symantec Norton Personal Firewall