Stack-based buffer overflow in vstlib32.dll 1.2.0.1012 in the SSAPI Engine 5.0.0.1066 through 5.2.0.1012 in Trend Micro AntiSpyware 3.5 and PC-Cillin Internet Security 2007 15.0 through 15.3, when the Venus Spy Trap (VST) feature is enabled, allows local users to cause a denial of service (service crash) or execute arbitrary code via a file with a long pathname, which triggers the overflow during a ReadDirectoryChangesW callback notification.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-08-22T23:00:00
Updated: 2024-08-07T14:37:04.135Z
Reserved: 2007-07-18T00:00:00
Link: CVE-2007-3873
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-08-22T23:17:00.000
Modified: 2024-11-21T00:34:16.903
Link: CVE-2007-3873
Redhat
No data.