CVE Database
/

CVE-2007-3873

Back to search

CVE-2007-3873

Published: Aug 22, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Stack-based buffer overflow in vstlib32.dll 1.2.0.1012 in the SSAPI Engine 5.0.0.1066 through 5.2.0.1012 in Trend Micro AntiSpyware 3.5 and PC-Cillin Internet Security 2007 15.0 through 15.3, when the Venus Spy Trap (VST) feature is enabled, allows local users to cause a denial of service (service crash) or execute arbitrary code via a file with a long pathname, which triggers the overflow during a ReadDirectoryChangesW callback notification.

VendorProductVersions

n/a

n/a

affected
n/a

References

antispyware-vstlib-bo(36144)
vdb-entry
x_refsource_XF
25388
vdb-entry
x_refsource_BID
ADV-2007-2935
vdb-entry
x_refsource_VUPEN
26557
third-party-advisory
x_refsource_SECUNIA
1018592
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now