Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Protection_suites
(Ca)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 13 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2009-10-13 | CVE-2009-3587 | Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted RAR archive file that triggers heap corruption, a different vulnerability than CVE-2009-3588. | Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_sdk, Common_services, Etrust_antivirus, Etrust_integrated_threat_management, Etrust_intrusion_detection, Etrust_secure_content_manager, Internet_security_suite, Network_and_systems_management, Secure_content_manager, Unicenter_network_and_systems_management, Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_gateway, Anti\-Virus_plus, Arcserve_backup, Arcserve_for_windows_client_agent, Arcserve_for_windows_server_component, Common_services, Etrust_anti\-Virus_gateway, Etrust_anti\-Virus_sdk, Etrust_ez_antivirus, Etrust_intrusion_detection, Etrust_secure_content_manager, Gateway_security, Internet_security_suite_2008, Internet_security_suite_plus_2008, Internet_security_suite_plus_2009, Protection_suites, Threat_manager, Threat_manager_total_defense | N/A | ||
2009-10-13 | CVE-2009-3588 | Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service via a crafted RAR archive file that triggers stack corruption, a different vulnerability than CVE-2009-3587. | Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_sdk, Arcserve_backup, Common_services, Etrust_antivirus, Etrust_integrated_threat_management, Etrust_intrusion_detection, Etrust_secure_content_manager, Internet_security_suite, Network_and_systems_management, Secure_content_manager, Unicenter_network_and_systems_management, Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_gateway, Anti\-Virus_plus, Arcserve_backup, Arcserve_for_windows_client_agent, Arcserve_for_windows_server_component, Common_services, Etrust_anti\-Virus_gateway, Etrust_anti\-Virus_sdk, Etrust_ez_antivirus, Etrust_intrusion_detection, Etrust_secure_content_manager, Gateway_security, Internet_security_suite_2008, Internet_security_suite_plus_2008, Internet_security_suite_plus_2009, Protection_suites, Threat_manager, Threat_manager_total_defense | N/A | ||
2007-06-06 | CVE-2007-2864 | Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file. | Anti\-Virus_for_the_enterprise, Brightstor_arcserve_backup, Common_services, Etrust_antivirus, Etrust_antivirus_gateway, Etrust_antivirus_sdk, Etrust_ez_antivirus, Etrust_ez_armor, Integrated_threat_management, Internet_security_suite, Unicenter_network_and_systems_management, Etrust_secure_content_manager, Protection_suites | N/A | ||
2007-07-26 | CVE-2007-3875 | arclib.dll before 7.3.0.9 in CA Anti-Virus (formerly eTrust Antivirus) 8 and certain other CA products allows remote attackers to cause a denial of service (infinite loop and loss of antivirus functionality) via an invalid "previous listing chunk number" field in a CHM file. | Anti\-Spyware, Anti\-Virus_for_the_enterprise, Anti_virus_sdk, Antispyware_for_the_enterprise, Antivirus_sdk, Brightstor_arcserve_backup, Brightstor_arcserve_client, Brightstor_enterprise_backup, Brigthstor_arcserve_client_for_windows, Common_services, Etrust_antivirus, Etrust_antivirus_gateway, Etrust_ez_antivirus, Etrust_ez_armor, Etrust_internet_security_suite, Etrust_intrusion_detection, Internet_security_suite, Secure_content_manager, Threat_manager, Unicenter_network_and_systems_management, Brightstor_arcserve_backup, Etrust_intrusion_detection, Protection_suites | N/A | ||
2009-01-28 | CVE-2009-0042 | Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA products allow remote attackers to bypass virus detection via a malformed archive file. | Anti\-Spyware, Anti\-Spyware_for_the_enterprise, Anti\-Virus, Anti\-Virus_for_the_enterprise, Anti\-Virus_sdk, Antivirus_gateway, Arcserve_client_agent, Common_services, Etrust_ez_antivirus, Etrust_intrusion_detection, Network_and_systems_management, Secure_content_manager, Arcserve_backup, Etrust_intrusion_detection, Internet_security_suite_2007, Internet_security_suite_2008, Internet_security_suite_plus_2008, Protection_suites, Threat_manager_for_the_enterprise | N/A | ||
2008-08-01 | CVE-2008-3175 | Integer underflow in rxRPC.dll in the LGServer service in the server in CA ARCserve Backup for Laptops and Desktops 11.0 through 11.5 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted message that triggers a buffer overflow. | Brightstor_arcserve_backup, Desktop_management_suite, Arcserve_backup_for_laptops_and_desktops, Brightstor_arcserve_backup, Protection_suites | N/A | ||
2007-10-01 | CVE-2007-5006 | Multiple command handlers in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 do not verify if a peer is authenticated, which allows remote attackers to add and delete users, and start client restores. | Brightstor_arcserve_backup_laptops_desktops, Desktop_management_suite, Protection_suites | N/A | ||
2007-10-01 | CVE-2007-5005 | Directory traversal vulnerability in rxRPC.dll in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to upload and overwrite arbitrary files via a ..\ (dot dot backslash) sequence in the destination filename argument to sub-function 8 in the rxrReceiveFileFromServer command. | Brightstor_arcserve_backup_laptops_desktops, Desktop_management_suite, Protection_suites | N/A | ||
2007-10-01 | CVE-2007-5004 | Integer overflow in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to execute arbitrary code via a long username and a certain "useless" password. | Brightstor_arcserve_backup_laptops_desktops, Desktop_management_suite, Protection_suites | N/A | ||
2007-10-01 | CVE-2007-5003 | Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allow remote attackers to execute arbitrary code via a long (1) username or (2) password to the rxrLogin command in rxRPC.dll, or a long (3) username argument to the GetUserInfo function. | Brightstor_arcserve_backup_laptops_desktops, Desktop_management_suite, Protection_suites | N/A |