Symantec.AntiVirus.Engine.CAB.Parsing.Heap.Overflow

description-logoDescription

This indicates a possible exploit of a buffer overflow vulnerability in Symantec's AntiVirus Engine.
The specific flaw can be exploited during the process of scanning multiple maliciously formatted CAB archives.

affected-products-logoAffected Products

Symantec AntiVirus Engine.

Impact logoImpact

Denial of service.

recomended-action-logoRecommended Actions

Symantec has issued an update to correct this vulnerability:
http://www.symantec.com/avcenter/security/Content/2007.07.11f.html

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

References

ZDI-07-040