CVE-2007-3952: High severity Norman Normon Antivirus vulnerability
Published Jul 24, 2007
·Updated
The OLE2 parsing in Norman Antivirus before 5.91.02 allows remote attackers to bypass the malware detection via a crafted DOC file, resulting from an "integer cast around".
Affected Software
1 affected component
Norman Normon Antivirus<=5.90
Event History
Jul 24, 2007
CVE Published
05:30 PM
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3952?
The severity of CVE-2007-3952 can be categorized as moderate, as it allows remote attackers to bypass malware detection.
2
How do I fix CVE-2007-3952?
To fix CVE-2007-3952, users should update Norman Antivirus to version 5.91.02 or later.
3
What type of file is used to exploit CVE-2007-3952?
CVE-2007-3952 is exploited using a crafted DOC file.
4
Who is affected by CVE-2007-3952?
CVE-2007-3952 affects all versions of Norman Antivirus prior to 5.91.02.
5
What can attackers achieve with CVE-2007-3952?
Attackers can bypass malware detection in Norman Antivirus using CVE-2007-3952.