Denial of Service Vulnerability in Symantec Norton Personal Firewall 2006
CVE-2007-1495

Currently unrated

Key Information:

Vendor

Symantec

Vendor
CVE Published:
16 March 2007

What is CVE-2007-1495?

The SymEvent driver in Symantec Norton Personal Firewall 2006 and possibly other related products is susceptible to a denial of service condition. Local users can exploit this vulnerability by sending malformed data via the DeviceIoControl function, resulting in a system crash. This issue recalls the previously identified vulnerability CVE-2006-4855, demonstrating a regression in system stability and security.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2007-1495 : Denial of Service Vulnerability in Symantec Norton Personal Firewall 2006