CVE Vulnerabilities

CVE-2007-2864

Published: Jun 06, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.

Affected Software

NameVendorStart VersionEnd Version
Anti-virus_for_the_enterpriseBroadcom8 (including)8 (including)
Brightstor_arcserve_backupBroadcom9.01 (including)9.01 (including)
Brightstor_arcserve_backupBroadcom10.5 (including)10.5 (including)
Brightstor_arcserve_backupBroadcom11 (including)11 (including)
Brightstor_arcserve_backupBroadcom11.1 (including)11.1 (including)
Brightstor_arcserve_backupBroadcom11.5 (including)11.5 (including)
Common_servicesBroadcom1.0 (including)1.0 (including)
Common_servicesBroadcom1.1 (including)1.1 (including)
Common_servicesBroadcom2.0 (including)2.0 (including)
Common_servicesBroadcom2.1 (including)2.1 (including)
Common_servicesBroadcom2.2 (including)2.2 (including)
Common_servicesBroadcom3.0 (including)3.0 (including)
Etrust_antivirusBroadcom8.0 (including)8.0 (including)
Etrust_antivirusBroadcom8.1 (including)8.1 (including)
Etrust_antivirus_gatewayBroadcom7.1 (including)7.1 (including)
Etrust_antivirus_sdkBroadcom**
Etrust_ez_antivirusBroadcom6.1 (including)6.1 (including)
Etrust_ez_antivirusBroadcom7.0 (including)7.0 (including)
Etrust_ez_armorBroadcom1.0 (including)1.0 (including)
Etrust_ez_armorBroadcom2.0 (including)2.0 (including)
Etrust_ez_armorBroadcom3.0 (including)3.0 (including)
Etrust_ez_armorBroadcom3.1 (including)3.1 (including)
Integrated_threat_managementBroadcom8.0 (including)8.0 (including)
Internet_security_suiteBroadcom1.0 (including)1.0 (including)
Internet_security_suiteBroadcom2.0 (including)2.0 (including)
Internet_security_suiteBroadcom3.0 (including)3.0 (including)
Unicenter_network_and_systems_managementBroadcom3.0 (including)3.0 (including)
Unicenter_network_and_systems_managementBroadcom3.1 (including)3.1 (including)
Unicenter_network_and_systems_managementBroadcom11 (including)11 (including)
Unicenter_network_and_systems_managementBroadcom11.1 (including)11.1 (including)
Etrust_secure_content_managerCa8.0 (including)8.0 (including)
Protection_suitesCar2 (including)r2 (including)
Protection_suitesCar3 (including)r3 (including)

References