4.3

CVE-2009-3588

Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service via a crafted RAR archive file that triggers stack corruption, a different vulnerability than CVE-2009-3587.

Data is provided by the National Vulnerability Database (NVD)
BroadcomAnti-virus Version2007 Update8
BroadcomAnti-virus Version2008
BroadcomCommon Services Version11
BroadcomCommon Services Version11.1
BroadcomEtrust Antivirus Version7.1
BroadcomEtrust Antivirus Version8
BroadcomEtrust Antivirus Version8.1
CaAnti-virus Version2009
CaAnti-virus Gateway Version7.1
CaAnti-virus Plus Version2009
CaCommon Services Version3.1
CaEtrust Anti-virus Gateway Version7.1
CaEtrust Ez Antivirus Versionr7.1
CaEtrust Intrusion Detection Version2.0 Updatesp1
CaEtrust Intrusion Detection Version3.0 Updatesp1
CaGateway Security Versionr8.1
CaProtection Suites Versionr2
CaProtection Suites Versionr3
CaProtection Suites Versionr3.1
CaThreat Manager Version8.1 Editionenterprise
CaThreat Manager Versionr8 Editionenterprise
BroadcomArcserve Backup Versionr12.0 Updatesp1
   MicrosoftWindows
BroadcomArcserve Backup Versionr12.0 Updatesp2
   MicrosoftWindows
CaArcserve Backup Versionr11.5
   MicrosoftWindows
CaArcserve Backup Versionr11.1
   LinuxLinux Kernel Version-
CaArcserve Backup Versionr11.5
   LinuxLinux Kernel Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.57% 0.798
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P