Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2009-0682

Overview

Vulnerability Score 2.1 2.1
CVE Id CVE-2009-0682
Last Modified 02 Sep 2009 01:21:24
Published 19 Aug 2009 01:30:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2009-0682

Summary

vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt.sys before 10.0.0.217 in Internet Security Suite r5 do not properly verify IOCTL calls, which allows local users to cause a denial of service (system crash) via a crafted call.

Vulnerable Systems

Application

  • Ca Internet Security Suite

  • Ca Internet Security Suite 10.0.0.217

  • Ca Internet Security Suite 9.0.0.184


References

CONFIRM - https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=214673

BUGTRAQ - 20090826 [PT-2009-05] CA Internet Security Suite Denial of Service Vulnerability

BUGTRAQ - 20090818 CA20090818-02: Security Notice for CA Internet Security Suite

OSVDB - 57228

MISC - http://en.securitylab.ru/lab/PT-2009-05


Last Updated: 27 May 2016 10:50:20