Denial of Service Vulnerability in Symantec Products' Decomposer Component
CVE-2007-3699

Currently unrated

Key Information:

Vendor

Symantec

Vendor
CVE Published:
5 October 2007

What is CVE-2007-3699?

The Decomposer component in various Symantec products is susceptible to a denial of service condition, triggered when an attacker provides a specially crafted RAR archive file header with a specific value in the PACK_SIZE field. This vulnerability may lead to an infinite loop, causing the affected application to become unresponsive, thereby impacting the availability of services to legitimate users.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.