First published: Wed Jul 11 2007(Updated: )
CA ERwin Data Model Validator (formerly AllFusion Data Model Validator) allows remote attackers to (1) cause a denial of service (application hang) via a malformed .EXP database file and (2) cause a denial of service (aaplication crash) via a crafted .EXP database file, which triggers a NULL dereference.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Erwin Data Model Validator |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3696 has been classified as a medium severity vulnerability due to its potential to cause denial of service.
CVE-2007-3696 can cause affected systems to hang or crash when processing malformed .EXP database files.
To mitigate CVE-2007-3696, avoid opening untrusted or malformed .EXP database files.
There is no official patch provided for CVE-2007-3696; users should take preventive measures.
CVE-2007-3696 affects Broadcom Erwin Data Model Validator.