CVE-2007-1689: Buffer Overflow
Published May 16, 2007
·Updated
Buffer overflow in the ISAlertDataCOM ActiveX control in ISLALERT.DLL for Norton Personal Firewall 2004 and Internet Security 2004 allows remote attackers to execute arbitrary code via long arguments to the (1) Get and (2) Set functions.
Affected Software
2 affected components
Symantec Norton Internet Security=2004
Symantec Norton Personal Firewall=2004
Remediation
Event History
May 16, 2007
CVE Published
08:30 PM
May 17, 2007
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1689?
CVE-2007-1689 has a critical severity level due to the buffer overflow allowing remote code execution.
2
How do I fix CVE-2007-1689?
To fix CVE-2007-1689, users should update to a patched version of Norton Personal Firewall or Norton Internet Security.
3
What software is affected by CVE-2007-1689?
CVE-2007-1689 affects Norton Internet Security 2004 and Norton Personal Firewall 2004.
4
What type of vulnerability is CVE-2007-1689?
CVE-2007-1689 is classified as a buffer overflow vulnerability in the ISAlertDataCOM ActiveX control.
5
Can CVE-2007-1689 be exploited remotely?
Yes, CVE-2007-1689 can be exploited remotely, allowing attackers to execute arbitrary code.