2009-10-13
|
CVE-2009-3587
|
Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted RAR archive file that triggers heap corruption, a different vulnerability than CVE-2009-3588.
|
Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_sdk, Common_services, Etrust_antivirus, Etrust_integrated_threat_management, Etrust_intrusion_detection, Etrust_secure_content_manager, Internet_security_suite, Network_and_systems_management, Secure_content_manager, Unicenter_network_and_systems_management, Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_gateway, Anti\-Virus_plus, Arcserve_backup, Arcserve_for_windows_client_agent, Arcserve_for_windows_server_component, Common_services, Etrust_anti\-Virus_gateway, Etrust_anti\-Virus_sdk, Etrust_ez_antivirus, Etrust_intrusion_detection, Etrust_secure_content_manager, Gateway_security, Internet_security_suite_2008, Internet_security_suite_plus_2008, Internet_security_suite_plus_2009, Protection_suites, Threat_manager, Threat_manager_total_defense
|
N/A
|
|
|
2009-10-13
|
CVE-2009-3588
|
Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service via a crafted RAR archive file that triggers stack corruption, a different vulnerability than CVE-2009-3587.
|
Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_sdk, Arcserve_backup, Common_services, Etrust_antivirus, Etrust_integrated_threat_management, Etrust_intrusion_detection, Etrust_secure_content_manager, Internet_security_suite, Network_and_systems_management, Secure_content_manager, Unicenter_network_and_systems_management, Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_gateway, Anti\-Virus_plus, Arcserve_backup, Arcserve_for_windows_client_agent, Arcserve_for_windows_server_component, Common_services, Etrust_anti\-Virus_gateway, Etrust_anti\-Virus_sdk, Etrust_ez_antivirus, Etrust_intrusion_detection, Etrust_secure_content_manager, Gateway_security, Internet_security_suite_2008, Internet_security_suite_plus_2008, Internet_security_suite_plus_2009, Protection_suites, Threat_manager, Threat_manager_total_defense
|
N/A
|
|
|
2007-06-06
|
CVE-2007-2864
|
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.
|
Anti\-Virus_for_the_enterprise, Brightstor_arcserve_backup, Common_services, Etrust_antivirus, Etrust_antivirus_gateway, Etrust_antivirus_sdk, Etrust_ez_antivirus, Etrust_ez_armor, Integrated_threat_management, Internet_security_suite, Unicenter_network_and_systems_management, Etrust_secure_content_manager, Protection_suites
|
N/A
|
|
|
2007-07-26
|
CVE-2007-3875
|
arclib.dll before 7.3.0.9 in CA Anti-Virus (formerly eTrust Antivirus) 8 and certain other CA products allows remote attackers to cause a denial of service (infinite loop and loss of antivirus functionality) via an invalid "previous listing chunk number" field in a CHM file.
|
Anti\-Spyware, Anti\-Virus_for_the_enterprise, Anti_virus_sdk, Antispyware_for_the_enterprise, Antivirus_sdk, Brightstor_arcserve_backup, Brightstor_arcserve_client, Brightstor_enterprise_backup, Brigthstor_arcserve_client_for_windows, Common_services, Etrust_antivirus, Etrust_antivirus_gateway, Etrust_ez_antivirus, Etrust_ez_armor, Etrust_internet_security_suite, Etrust_intrusion_detection, Internet_security_suite, Secure_content_manager, Threat_manager, Unicenter_network_and_systems_management, Brightstor_arcserve_backup, Etrust_intrusion_detection, Protection_suites
|
N/A
|
|
|
2005-08-23
|
CVE-2005-2668
|
Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allow remote attackers to execute arbitrary code via unknown vectors.
|
Advantage_data_transport, Adviseit, Brightstor_portal, Brightstor_san_manager, Cleverpath_aion, Cleverpath_ecm, Cleverpath_olap, Cleverpath_predictive_analysis_server, Etrust_admin, Messaging, Unicenter_application_performance_monitor, Unicenter_asset_management, Unicenter_data_transport_option, Unicenter_jasmine, Unicenter_management_portal, Unicenter_network_and_systems_management, Unicenter_nsm_wireless_network_management_option, Unicenter_performance_management, Unicenter_remote_control, Unicenter_service_level_management, Unicenter_software_delivery, Unicenter_tng, Etrust_admin, Unicenter_asset_management, Unicenter_enterprise_job_manager, Unicenter_management, Unicenter_software_delivery, Unicenter_tng
|
N/A
|
|
|
2007-07-26
|
CVE-2007-0060
|
Stack-based buffer overflow in the Message Queuing Server (Cam.exe) in CA (formerly Computer Associates) Message Queuing (CAM / CAFT) software before 1.11 Build 54_4 on Windows and NetWare, as used in CA Advantage Data Transport, eTrust Admin, certain BrightStor products, certain CleverPath products, and certain Unicenter products, allows remote attackers to execute arbitrary code via a crafted message to TCP port 3104.
|
Advantage_data_transport, Brightstor_portal, Brightstor_san_manager, Cleverpath_aion, Cleverpath_ecm, Cleverpath_olap, Cleverpath_predictive_analysis_server, Etrust_admin, Unicenter_application_performance_monitor, Unicenter_asset_management, Unicenter_data_transport_option, Unicenter_jasmine, Unicenter_network_and_systems_management, Unicenter_nsm_wireless_network_management_option, Unicenter_remote_control, Unicenter_service_level_management, Unicenter_software_delivery, Unicenter_tng, Etrust_admin, Unicenter_asset_management, Unicenter_enterprise_job_manager, Unicenter_management, Unicenter_software_delivery, Unicenter_tng
|
N/A
|
|
|
2005-08-23
|
CVE-2005-2669
|
Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allows remote attackers to execute arbitrary commands via spoofed CAFT packets.
|
Advantage_data_transport, Adviseit, Brightstor_portal, Brightstor_san_manager, Cleverpath_aion, Cleverpath_ecm, Cleverpath_olap, Cleverpath_predictive_analysis_server, Etrust_admin, Messaging, Unicenter_application_performance_monitor, Unicenter_asset_management, Unicenter_data_transport_option, Unicenter_jasmine, Unicenter_management_portal, Unicenter_network_and_systems_management, Unicenter_nsm_wireless_network_management_option, Unicenter_performance_management, Unicenter_remote_control, Unicenter_service_level_management, Unicenter_software_delivery, Unicenter_tng, Etrust_admin, Unicenter_asset_management, Unicenter_enterprise_job_manager, Unicenter_management, Unicenter_software_delivery, Unicenter_tng
|
N/A
|
|
|
2004-12-31
|
CVE-2004-2436
|
Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndAddNspTmp.bat file, which could allow local users to gain privileges.
|
Common_services, Unicenter_network_and_systems_management, Unicenter_serviceplus_service_desk
|
N/A
|
|
|