CVE-2009-0042

Published Jan 28, 2009

Last updated 7 days ago

Overview

Description
Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA products allow remote attackers to bypass virus detection via a malformed archive file.
Source
cve@mitre.org
NVD status
Modified
Products
anti-spyware, anti-spyware_for_the_enterprise, anti-virus, anti-virus_for_the_enterprise, anti-virus_sdk, antivirus_gateway, arcserve_client_agent, common_services, etrust_ez_antivirus, etrust_intrusion_detection, network_and_systems_management, secure_content_manager, arcserve_backup, etrust_intrusion_detection, internet_security_suite_2007, internet_security_suite_2008, internet_security_suite_plus_2008, protection_suites, threat_manager_for_the_enterprise

Risk scores

CVSS 2.0

Type
Primary
Base score
10
Impact score
10
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

nvd@nist.gov
NVD-CWE-noinfo

Social media

Hype score
Not currently trending

Configurations