CVE-2007-1793

N/A Unknown
Published: April 02, 2007 Modified: April 23, 2026
View on NVD

Description

SPBBCDrv.sys in Symantec Norton Personal Firewall 2006 9.1.0.33 and 9.1.1.7 does not validate certain arguments before being passed to hooked SSDT function handlers, which allows local users to cause a denial of service (crash) or possibly execute arbitrary code via crafted arguments to the (1) NtCreateMutant and (2) NtOpenEvent functions. NOTE: it was later reported that Norton Internet Security 2008 15.0.0.60, and possibly other versions back to 2006, are also affected.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/34692
Source: cve@mitre.org
http://secunia.com/advisories/24677
Source: cve@mitre.org
Vendor Advisory
http://www.securityfocus.com/bid/23241
Source: cve@mitre.org
Exploit
http://www.vupen.com/english/advisories/2007/1192
Source: cve@mitre.org
Vendor Advisory
http://osvdb.org/34692
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/24677
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.securityfocus.com/archive/1/464456/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/479830/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/23241
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.securitytracker.com/id?1017837
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.securitytracker.com/id?1017838
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.securitytracker.com/id?1021386
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1021387
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1021388
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1021389
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/1192
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/33352
Source: af854a3a-2127-422b-91ae-364da2661108

34 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.3%
51th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

symantec