Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-1693

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2005-1693
Last Modified 05 Sep 2008 04:49:49
Published 24 May 2005 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2005-1693

Summary

Integer overflow in Computer Associates Vet Antivirus library, as used by CA InoculateIT 6.0, eTrust Antivirus r6.0 through 7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, BrightStor ARCserve Backup (BAB) r11.1, Vet Antivirus, Zonelabs ZoneAlarm Security Suite, and ZoneAlarm Antivirus, allows remote attackers to gain privileges via a compressed VBA directory with a project name length of -1, which leads to a heap-based buffer overflow.

Vulnerable Systems

Application

  • Ca Brightstor Arcserve Backup 11.1

  • Ca Etrust Antivirus 6.0

  • Ca Etrust Antivirus 7.0

  • Ca Etrust Antivirus 7.0 Sp2

  • Ca Etrust Antivirus 7.1

  • Ca Etrust Antivirus Ee 6.0

  • Ca Etrust Antivirus Ee 7.0

  • Ca Etrust Ez Armor 1.0

  • Ca Etrust Ez Armor 2.0

  • Ca Etrust Ez Armor 2.3

  • Ca Etrust Ez Armor 2.4

  • Ca Etrust Ez Armor 2.4.4

  • Ca Etrust Ez Armor Le 2.0

  • Ca Etrust Ez Armor Le 3.0.0.14

  • Ca Etrust Intrusion Detection 1.4.1.13

  • Ca Etrust Intrusion Detection 1.4.5

  • Ca Etrust Intrusion Detection 1.5

  • Ca Etrust Intrusion Detection 3.0

  • Ca Etrust Secure Content Manager 1.0

  • Ca Etrust Secure Content Manager 1.1

  • Ca Inoculateit 6.0

  • Ca Vet Antivirus 10.66

  • Zonelabs Zonealarm

  • Zonelabs Zonealarm Antivirus


References

MISC - http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=32896

CONFIRM - http://crm.my-etrust.com/login.asp?username=guest&target=DOCUMENT&openparameter=1588

BID - 13710

MISC - http://www.rem0te.com/public/images/vet.pdf

SECTRACK - 1014050

SECUNIA - 15479

SECUNIA - 15470

BUGTRAQ - 20050523 Computer Associates Vet Antivirus Library Remote Heap Overflow


Last Updated: 27 May 2016 10:40:16