CVE-2009-3587 : Detail

CVE-2009-3587

8.22%V4
Network
2009-10-13
08h00 +00:00
2018-10-10
16h57 +00:00
Notifications for a CVE
Stay informed of any changes for a specific CVE.
Notifications manage

CVE Descriptions

Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted RAR archive file that triggers heap corruption, a different vulnerability than CVE-2009-3588.

CVE Informations

Related Weaknesses

CWE-ID Weakness Name Source
CWE Other No informations.

Metrics

Metrics Score Severity CVSS Vector Source
V2 9.3 AV:N/AC:M/Au:N/C:C/I:C/A:C nvd@nist.gov

EPSS

EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.

EPSS Score

The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.

EPSS Percentile

The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.

Products Mentioned

Configuraton 0

Broadcom>>Anti-virus >> Version 2007

Broadcom>>Anti-virus >> Version 2008

Broadcom>>Anti-virus_for_the_enterprise >> Version 7.1

Broadcom>>Anti-virus_for_the_enterprise >> Version r8

Broadcom>>Anti-virus_sdk >> Version *

Broadcom>>Common_services >> Version 11

Broadcom>>Common_services >> Version 11.1

Broadcom>>Etrust_antivirus >> Version 7.1

Broadcom>>Etrust_antivirus >> Version 8

Broadcom>>Etrust_antivirus >> Version 8.1

Broadcom>>Etrust_integrated_threat_management >> Version 8.1

Broadcom>>Etrust_intrusion_detection >> Version 3.0

Broadcom>>Etrust_secure_content_manager >> Version 1.1

Broadcom>>Internet_security_suite >> Version *

Broadcom>>Internet_security_suite >> Version 3.0

Broadcom>>Network_and_systems_management >> Version r3.0

Broadcom>>Network_and_systems_management >> Version r3.1

Broadcom>>Network_and_systems_management >> Version r11

Broadcom>>Network_and_systems_management >> Version r11.1

Broadcom>>Secure_content_manager >> Version 1.1

Broadcom>>Secure_content_manager >> Version 8.0

Broadcom>>Unicenter_network_and_systems_management >> Version 3.0

Broadcom>>Unicenter_network_and_systems_management >> Version 3.1

Broadcom>>Unicenter_network_and_systems_management >> Version 11

Broadcom>>Unicenter_network_and_systems_management >> Version 11.1

Ca>>Anti-virus >> Version 2009

Ca>>Anti-virus_for_the_enterprise >> Version r8.1

Ca>>Anti-virus_gateway >> Version 7.1

Ca>>Anti-virus_plus >> Version 2009

Ca>>Arcserve_backup >> Version r11.5

Ca>>Arcserve_for_windows_client_agent >> Version *

Ca>>Arcserve_for_windows_server_component >> Version *

Ca>>Common_services >> Version 3.1

Ca>>Etrust_anti-virus_gateway >> Version 7.1

Ca>>Etrust_anti-virus_sdk >> Version *

Ca>>Etrust_ez_antivirus >> Version r7.1

Ca>>Etrust_intrusion_detection >> Version 2.0

Ca>>Etrust_intrusion_detection >> Version 3.0

Ca>>Etrust_secure_content_manager >> Version 8.0

Ca>>Gateway_security >> Version r8.1

Ca>>Internet_security_suite_2008 >> Version *

Ca>>Internet_security_suite_plus_2008 >> Version *

Ca>>Internet_security_suite_plus_2009 >> Version *

Ca>>Protection_suites >> Version r2

Ca>>Protection_suites >> Version r3

Ca>>Protection_suites >> Version r3.1

Ca>>Threat_manager >> Version 8.1

Ca>>Threat_manager >> Version r8

Ca>>Threat_manager_total_defense >> Version *

Configuraton 0

Ca>>Arcserve_backup >> Version r11.1

Ca>>Arcserve_backup >> Version r11.5

Linux>>Linux_kernel >> Version -

References

http://osvdb.org/58691
Tags : vdb-entry, x_refsource_OSVDB
http://secunia.com/advisories/36976
Tags : third-party-advisory, x_refsource_SECUNIA
http://www.securitytracker.com/id?1022999
Tags : vdb-entry, x_refsource_SECTRACK
http://www.vupen.com/english/advisories/2009/2852
Tags : vdb-entry, x_refsource_VUPEN
http://www.securityfocus.com/bid/36653
Tags : vdb-entry, x_refsource_BID