Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2007-3699


The Decomposer component in multiple Symantec products allows remote attackers to cause a denial of service (infinite loop) via a certain value in the PACK_SIZE field of a RAR archive file header.


Published

2007-10-05T21:17:00.000

Last Modified

2025-04-09T00:30:58.490

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 9.3 (HIGH)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

8.6

Impact Score

10.0

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application symantec antivirus_scan_engine 4.0 Yes
Application symantec antivirus_scan_engine 4.0 Yes
Application symantec antivirus_scan_engine 4.1 Yes
Application symantec antivirus_scan_engine 4.1.8 Yes
Application symantec antivirus_scan_engine 4.3 Yes
Application symantec antivirus_scan_engine 4.3 Yes
Application symantec antivirus_scan_engine 4.3 Yes
Application symantec antivirus_scan_engine 4.3 Yes
Application symantec antivirus_scan_engine 4.3 Yes
Application symantec antivirus_scan_engine 4.3.3 Yes
Application symantec antivirus_scan_engine 4.3.7.27 Yes
Application symantec antivirus_scan_engine 4.3.8.29 Yes
Application symantec antivirus_scan_engine 4.3.12 Yes
Application symantec antivirus_scan_engine 4.3.12 Yes
Application symantec antivirus_scan_engine 4.3.12 Yes
Application symantec antivirus_scan_engine 4.3.12 Yes
Application symantec antivirus_scan_engine 4.3.12 Yes
Application symantec antivirus_scan_engine 4.3.12 Yes
Application symantec antivirus_scan_engine 5.0 Yes
Application symantec antivirus_scan_engine 5.0.1 Yes
Application symantec brightmail_antispam 4.0 Yes
Application symantec brightmail_antispam 5.5 Yes
Application symantec brightmail_antispam 6.0 Yes
Application symantec brightmail_antispam 6.0.1 Yes
Application symantec brightmail_antispam 6.0.2 Yes
Application symantec brightmail_antispam 6.0.3 Yes
Application symantec brightmail_antispam 6.0.4 Yes
Application symantec client_security 2.0 Yes
Application symantec client_security 2.0 Yes
Application symantec client_security 2.0 Yes
Application symantec client_security 2.0.1_build_9.0.1.1000 Yes
Application symantec client_security 2.0.2_build_9.0.2.1000 Yes
Application symantec client_security 2.0.3_build_9.0.3.1000 Yes
Application symantec client_security 2.0.4 Yes
Application symantec client_security 2.0.4 Yes
Application symantec client_security 2.0.5_build_1100_mp1 Yes
Application symantec client_security 2.0.6 Yes
Application symantec client_security 3.0 Yes
Application symantec client_security 3.0.0.359 Yes
Application symantec client_security 3.0.1.1000 Yes
Application symantec client_security 3.0.1.1001 Yes
Application symantec client_security 3.0.1.1007 Yes
Application symantec client_security 3.0.1.1008 Yes
Application symantec client_security 3.0.2.2000 Yes
Application symantec client_security 3.0.2.2001 Yes
Application symantec client_security 3.0.2.2002 Yes
Application symantec client_security 3.0.2.2010 Yes
Application symantec client_security 3.0.2.2011 Yes
Application symantec client_security 3.0.2.2020 Yes
Application symantec client_security 3.0.2.2021 Yes
Application symantec client_security 3.1 Yes
Application symantec client_security 3.1.394 Yes
Application symantec client_security 3.1.396 Yes
Application symantec client_security 3.1.400 Yes
Application symantec client_security 3.1.401 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.0 Yes
Application symantec mail_security 4.0.1 Yes
Application symantec mail_security 4.1 Yes
Application symantec mail_security 4.1 Yes
Application symantec mail_security 4.1 Yes
Application symantec mail_security 4.5 Yes
Application symantec mail_security 4.5.4.743 Yes
Application symantec mail_security 4.5_build_719 Yes
Application symantec mail_security 4.5_build_736 Yes
Application symantec mail_security 4.5_build_741 Yes
Application symantec mail_security 4.6.1.107 Yes
Application symantec mail_security 4.6.3 Yes
Application symantec mail_security 4.6_build_97 Yes
Application symantec mail_security 5.0 Yes
Application symantec mail_security 5.0 Yes
Application symantec mail_security 5.0.0.204 Yes
Application symantec mail_security 5.0.1 Yes
Application symantec mail_security 5.1.0 Yes
Application symantec mail_security 6.0.0 Yes
Application symantec norton_antivirus * Yes
Application symantec norton_antivirus 9.0 Yes
Application symantec norton_antivirus 9.0 Yes
Application symantec norton_antivirus 9.0.0 Yes
Application symantec norton_antivirus 9.0.0.338 Yes
Application symantec norton_antivirus 9.0.1 Yes
Application symantec norton_antivirus 9.0.1.1.1000 Yes
Application symantec norton_antivirus 9.0.2 Yes
Application symantec norton_antivirus 9.0.2.1000 Yes
Application symantec norton_antivirus 9.0.3 Yes
Application symantec norton_antivirus 9.0.3.1000 Yes
Application symantec norton_antivirus 9.0.4 Yes
Application symantec norton_antivirus 9.0.4 Yes
Application symantec norton_antivirus 9.0.5 Yes
Application symantec norton_antivirus 9.0.5.1100 Yes
Application symantec norton_antivirus 9.0.6.1000 Yes
Application symantec norton_antivirus 10.0 Yes
Application symantec norton_antivirus 10.0 Yes
Application symantec norton_antivirus 10.0.0 Yes
Application symantec norton_antivirus 10.0.0.359 Yes
Application symantec norton_antivirus 10.0.1 Yes
Application symantec norton_antivirus 10.0.1.1000 Yes
Application symantec norton_antivirus 10.0.1.1007 Yes
Application symantec norton_antivirus 10.0.1.1008 Yes
Application symantec norton_antivirus 10.0.2.2000 Yes
Application symantec norton_antivirus 10.0.2.2001 Yes
Application symantec norton_antivirus 10.0.2.2002 Yes
Application symantec norton_antivirus 10.0.2.2010 Yes
Application symantec norton_antivirus 10.0.2.2011 Yes
Application symantec norton_antivirus 10.0.2.2020 Yes
Application symantec norton_antivirus 10.0.2.2021 Yes
Application symantec norton_antivirus 10.1 Yes
Application symantec norton_antivirus 10.1.4 Yes
Application symantec norton_antivirus 10.1.4 Yes
Application symantec norton_antivirus 10.1.4.4010 Yes
Application symantec norton_antivirus 10.1.394 Yes
Application symantec norton_antivirus 10.1.396 Yes
Application symantec norton_antivirus 10.1.400 Yes
Application symantec norton_antivirus 10.1.401 Yes
Application symantec norton_antivirus 10.9.1 Yes
Application symantec norton_antivirus 2004 Yes
Application symantec norton_antivirus 2004 Yes
Application symantec norton_antivirus 2005 Yes
Application symantec norton_antivirus 2005 Yes
Application symantec norton_antivirus 2005 Yes
Application symantec norton_antivirus 2005 Yes
Application symantec norton_antivirus 2006 Yes
Application symantec norton_internet_security 3.0 Yes
Application symantec norton_internet_security 2004 Yes
Application symantec norton_internet_security 2004 Yes
Application symantec norton_internet_security 2005 Yes
Application symantec norton_internet_security 2005 Yes
Application symantec norton_internet_security 2005 Yes
Application symantec norton_internet_security 2005 Yes
Application symantec norton_internet_security 2005 Yes
Application symantec norton_internet_security 2006 Yes
Application symantec norton_internet_security 2006 Yes
Application symantec norton_personal_firewall 2006 Yes
Application symantec norton_personal_firewall 2006_9.1.0.33 Yes
Application symantec norton_personal_firewall 2006_9.1.1.7 Yes
Application symantec norton_system_works 3.0 Yes
Application symantec norton_system_works 2004 Yes
Application symantec norton_system_works 2005 Yes
Application symantec norton_system_works 2005 Yes
Application symantec norton_system_works 2005 Yes
Application symantec norton_system_works 2005 Yes
Application symantec norton_system_works 2006 Yes
Application symantec symantec_antivirus_filtering_\+for_domino 3.0.12 Yes
Application symantec web_security 2.5 Yes
Application symantec web_security 3.0 Yes
Application symantec web_security 3.0.1 Yes
Application symantec web_security 3.0.1.70 Yes
Application symantec web_security 3.0.1.76 Yes
Application symantec web_security 3.0.1_build_3.01.70 Yes
Application symantec web_security 3.0.1_build_3.01.72 Yes
Application symantec web_security 3.0.1_build_3.01.74 Yes
Application symantec web_security 3.01.59 Yes
Application symantec web_security 3.01.60 Yes
Application symantec web_security 3.01.61 Yes
Application symantec web_security 3.01.62 Yes
Application symantec web_security 3.01.63 Yes
Application symantec web_security 3.01.67 Yes
Application symantec web_security 3.01.68 Yes
Application symantec web_security 5.0 Yes
Hardware symantec gateway_security_5000_series 3.0.1 Yes
Hardware symantec gateway_security_5400 2.0.1 Yes
Hardware symantec mail_security_8820_appliance * Yes

References