CVE-2007-2864
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD
Description
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.
Affected (33)
Products: Broadcom: Anti Virus For The Enterprise, Brightstor Arcserve Backup, Common Services, Etrust Antivirus, Etrust Antivirus Gateway, Etrust Antivirus Sdk, Etrust Ez Antivirus, Etrust Ez Armor, Integrated Threat Management, Internet Security Suite, Unicenter Network And Systems Management · Ca: Etrust Secure Content Manager, Protection Suites
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8 | |
| Version 10.5 | |
| Version 1.0 | |
| Version 8.0 | |
| Version 7.1 | |
| All versions | |
| Version 6.1 | |
| Version 1.0 | |
| Version 8.0 | |
| Version 1.0 | |
| Version 11.1 | |
| Version 8.0 | |
| Version r2 |
References (22)
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.