Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Etrust_ez_antivirus | Broadcom | 7.0 (including) | 7.0 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.1 (including) | 7.0.1 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.1.1 (including) | 7.0.1.1 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.1.2 (including) | 7.0.1.2 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.1.3 (including) | 7.0.1.3 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.1.4 (including) | 7.0.1.4 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.2 (including) | 7.0.2 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.2.1 (including) | 7.0.2.1 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.3 (including) | 7.0.3 (including) |
Etrust_ez_antivirus | Broadcom | 7.0.4 (including) | 7.0.4 (including) |