Unrated severityNVD Advisory· Published Jul 25, 2007· Updated Jun 16, 2026
CVE-2007-3970
CVE-2007-3970
Description
Race condition in ESET NOD32 Antivirus before 2.2289 allows remote attackers to execute arbitrary code via a crafted CAB file, which triggers heap corruption.
Affected products
2cpe:2.3:a:eset:nod32_antivirus:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:eset:nod32_antivirus:*:*:*:*:*:*:*:*range: <2.2289
- (no CPE)range: <2.2289
Patches
Vulnerability mechanics
References
10- secunia.com/advisories/26124nvdBroken LinkPatchVendor Advisory
- www.securityfocus.com/bid/24988nvdBroken LinkPatchThird Party AdvisoryVDB Entry
- securityreason.com/securityalert/2922nvdThird Party Advisory
- www.securityfocus.com/archive/1/474244/100/0/threadednvdBroken LinkThird Party AdvisoryVDB Entry
- exchange.xforce.ibmcloud.com/vulnerabilities/35526nvdThird Party AdvisoryVDB Entry
- osvdb.org/37976nvdBroken Link
- www.eset.com/joomla/index.phpnvdBroken Link
- www.nruns.com/%5Bn.runs-SA-2007.016%5D%20-%20NOD32%20Antivirus%20CAB%20parsing%20Arbitrary%20Code%20Execution%20Advisory.pdfnvdBroken Link
- www.nruns.com/%5Bn.runs-SA-2007.016%5D%20-%20NOD32%20Antivirus%20CAB%20parsing%20Arbitrary%20Code%20Execution%20Advisory.txtnvdBroken Link
- www.vupen.com/english/advisories/2007/2602nvdBroken Link
News mentions
0No linked articles in our index yet.