HIGH · 10.0

CVE-2009-0042

Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008;...

Vulnerability Description

Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA products allow remote attackers to bypass virus detection via a malformed archive file.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
BroadcomAnti-Spyware2007
BroadcomAnti-Spyware For The Enterprise8.1
BroadcomAnti-Virus2007
BroadcomAnti-Virus For The Enterprise7.1
BroadcomAnti-Virus SdkAll versions
BroadcomAntivirus Gateway7.1
BroadcomArcserve Client Agent-
BroadcomCommon Services11
BroadcomEtrust Ez Antivirusr6.1
BroadcomEtrust Intrusion Detection3.0
BroadcomNetwork And Systems Managementr3.0
BroadcomSecure Content Manager8.0
CaArcserve Backupr11.1
CaEtrust Intrusion Detection2.0
CaInternet Security Suite 20073
CaInternet Security Suite 2008All versions
CaInternet Security Suite Plus 2008All versions
CaProtection Suitesr2
CaThreat Manager For The Enterprise8.1

References

FAQ

What is CVE-2009-0042?

CVE-2009-0042 is a vulnerability with a CVSS score of 10.0 (HIGH). Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008;...

How severe is CVE-2009-0042?

CVE-2009-0042 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2009-0042?

Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Anti-Spyware, Broadcom Anti-Spyware For The Enterprise, Broadcom Anti-Virus, Broadcom Anti-Virus For The Enterprise, Broadcom Anti-Virus Sdk.