CVE-2007-2864: Buffer Overflow
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2864?
CVE-2007-2864 has a severity rating that indicates a high risk of remote code execution through a buffer overflow.
How do I fix CVE-2007-2864?
To fix CVE-2007-2864, ensure you update the Anti-Virus engine to the latest version or apply the relevant security patch.
What products are affected by CVE-2007-2864?
Products affected by CVE-2007-2864 include multiple CA Anti-Virus versions, BrightStor ARCServe Backup, and eTrust products.
Can CVE-2007-2864 be exploited remotely?
Yes, CVE-2007-2864 can be exploited remotely by attackers sending specially crafted .CAB files.
What are the potential consequences of CVE-2007-2864?
The potential consequences of CVE-2007-2864 include arbitrary code execution and complete system compromise.