First published: Thu May 24 2007(Updated: )
Multiple stack-based buffer overflows in ESET NOD32 Antivirus before 2.70.37.0 allow remote attackers to execute arbitrary code during (1) delete/disinfect or (2) rename operations via a crafted directory name.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ESET NOD32 Antivirus | =2.70.37.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2852 is considered a critical vulnerability due to its potential for remote code execution.
To fix CVE-2007-2852, upgrade ESET NOD32 Antivirus to version 2.70.37.0 or later.
Attackers can exploit CVE-2007-2852 to execute arbitrary code during delete/disinfect or rename operations.
CVE-2007-2852 affects all versions of ESET NOD32 Antivirus prior to 2.70.37.0.
There are no officially documented workarounds for CVE-2007-2852; applying the update is the recommended solution.