CVE-2007-3673

Symantec symtdi.sys <7.0.0 - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-3673. PoCs published by Zohiartze Herce.

AI-analyzed exploit summary This is a writeup for CVE-2007-3673, a local privilege escalation vulnerability in Symantec AntiVirus's symtdi.sys driver. The advisory references an external download link for the exploit code but does not contain executable code itself.

Description

Symantec symtdi.sys before 7.0.0, as distributed in Symantec AntiVirus Corporate Edition 9 through 10.1 and Client Security 2.0 through 3.1, Norton AntiSpam 2005, and Norton AntiVirus, Internet Security, Personal Firewall, and System Works 2005 and 2006; allows local users to gain privileges via a crafted Interrupt Request Packet (Irp) in an IOCTL 0x83022323 request to \\symTDI\, which results in memory overwrite.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Zohiartze Herce · textlocalwindows
https://www.exploit-db.com/exploits/4178

This is a writeup for CVE-2007-3673, a local privilege escalation vulnerability in Symantec AntiVirus's symtdi.sys driver. The advisory references an external download link for the exploit code but does not contain executable code itself.

Classification
Writeup 90%
Attack Type
Lpe
Complexity
Moderate
Reliability
Theoretical
Target: Symantec AntiVirus (symtdi.sys driver)
No auth needed
Prerequisites: Local access to the target system · Presence of vulnerable Symantec AntiVirus installation
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26042
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/22351
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/35347
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2507
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/36117
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1018372
Patch third-party-advisory x_refsource_idefense
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=554

Scores

EPSS 0.0018
EPSS Percentile 39.0%

Details

Status published
Products (25)
symantec/client_security 2.0
symantec/client_security 3.0
symantec/client_security 3.1
symantec/norton_antispam 2005
symantec/norton_antivirus 9.0
symantec/norton_antivirus 9.0.0.338
symantec/norton_antivirus 9.0.1
symantec/norton_antivirus 9.0.1.1.1000
symantec/norton_antivirus 9.0.1.1000
symantec/norton_antivirus 9.0.2
... and 15 more
Published Jul 15, 2007
Tracked Since Feb 18, 2026