Stack-Based Buffer Overflow in Symantec AntiVirus and Client Security
CVE-2007-3771
Currently unrated
Key Information:
- Vendor
Symantec
- Vendor
- CVE Published:
- 15 July 2007
What is CVE-2007-3771?
A stack-based buffer overflow in the Internet E-mail Auto-Protect feature of Symantec AntiVirus Corporate Edition prior to version 10.1 and Client Security before version 3.1 can be exploited by local users. The vulnerability arises when an attacker sends an outbound SMTP email containing overly long headers for the 'To', 'From', or 'Subject' fields. This can lead to unexpected behavior, including service crashes, and consequently disrupt email processing.
References
Timeline
Vulnerability published
Vulnerability Reserved