CVE Vulnerabilities

CVE-2007-3771

Published: Jul 15, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:S/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu

Stack-based buffer overflow in the Internet E-mail Auto-Protect feature in Symantec AntiVirus Corporate Edition before 10.1, and Client Security before 3.1, allows local users to cause a denial of service (service crash) via a long (1) To, (2) From, or (3) Subject header in an outbound SMTP e-mail message. NOTE: the original vendor advisory referenced CVE-2006-3456, but this was an error.

Affected Software

Name Vendor Start Version End Version
Client_security Symantec 3.0 3.0
Client_security Symantec 3.0.1.1009 3.0.1.1009
Norton_antivirus Symantec 9.0.2.1000 9.0.2.1000
Norton_antivirus Symantec 9.0.3.1000 9.0.3.1000
Client_security Symantec 3.0.2.2021 3.0.2.2021
Norton_antivirus Symantec 9.0.2 9.0.2
Norton_antivirus Symantec 10.0.2.2011 10.0.2.2011
Norton_antivirus Symantec 10.0.2.2010 10.0.2.2010
Client_security Symantec 3.0.1.1000 3.0.1.1000
Norton_antivirus Symantec 10.0 10.0
Norton_antivirus Symantec 10.0.1.1000 10.0.1.1000
Client_security Symantec 3.0.2.2002 3.0.2.2002
Norton_antivirus Symantec 9.0.1.1.1000 9.0.1.1.1000
Client_security Symantec 3.0.2.2011 3.0.2.2011
Norton_antivirus Symantec 9.0.5.1100 9.0.5.1100
Client_security Symantec 3.0.2 3.0.2
Norton_antivirus Symantec 10.0.2.2001 10.0.2.2001
Norton_antivirus Symantec 9.0.1 9.0.1
Norton_antivirus Symantec 9.0.1.1000 9.0.1.1000
Norton_antivirus Symantec 10.0.1.1007 10.0.1.1007
Norton_antivirus Symantec 10.0.2.2020 10.0.2.2020
Client_security Symantec 3.0.2.2001 3.0.2.2001
Norton_antivirus Symantec 9.0.4 9.0.4
Norton_antivirus Symantec 9.0.0.338 9.0.0.338
Client_security Symantec 2.0 2.0
Norton_antivirus Symantec 10.0.2.2000 10.0.2.2000
Client_security Symantec 3.0.2.2000 3.0.2.2000
Norton_antivirus Symantec 10.0.2.2021 10.0.2.2021
Norton_antivirus Symantec 9.0 9.0
Client_security Symantec 3.0.1.1007 3.0.1.1007
Norton_antivirus Symantec 9.0.5 9.0.5
Norton_antivirus Symantec 10.0.2.2002 10.0.2.2002

References