First published: Wed Jan 28 2009(Updated: )
Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA products allow remote attackers to bypass virus detection via a malformed archive file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Anti-Spyware for the Enterprise | =2007 | |
Broadcom Anti-Spyware for the Enterprise | =2008 | |
Broadcom Anti-Spyware | =8.1 | |
Broadcom Anti-Spyware | =r8 | |
Broadcom Anti-Virus | =2007-8 | |
Broadcom Anti-Virus | =2008 | |
Broadcom Anti-Virus | =7.1 | |
Broadcom Anti-Virus | =8.1 | |
Broadcom Anti-Virus | =r8 | |
Broadcom Anti-Virus | ||
Broadcom eTrust Antivirus Gateway | =7.1 | |
CA BrightStor ARCserve Client | ||
CA Common Services | =11 | |
CA Common Services | =11.1 | |
Broadcom eTrust EZ Antivirus | =r6.1 | |
Broadcom eTrust EZ Antivirus | =r7 | |
Broadcom eTrust Intrusion Detection | =3.0 | |
Broadcom eTrust Intrusion Detection | =4.0 | |
CA Network and Systems Management | =r3.0 | |
CA Network and Systems Management | =r3.1 | |
CA Network and Systems Management | =r11 | |
CA Network and Systems Management | =r11.1 | |
Broadcom Secure Content Manager | =8.0 | |
Broadcom Secure Content Manager | =8.1 | |
CA ARCserve Backup for Laptops and Desktops | =r11.1-_nil_ | |
CA ARCserve Backup for Laptops and Desktops | =r11.1-_nil_ | |
CA ARCserve Backup for Laptops and Desktops | =r11.5_nil_-linux | |
CA ARCserve Backup for Laptops and Desktops | =r11.5_nil_-windows | |
CA ARCserve Backup for Laptops and Desktops | =r12.0_nil_-windows | |
Broadcom eTrust Intrusion Detection | =2.0-sp1 | |
Broadcom eTrust Intrusion Detection | =3.0-sp1 | |
Broadcom Internet Security Suite | =3 | |
Broadcom Internet Security Suite | ||
Broadcom Internet Security Suite | ||
CA Protection Suites | =r2 | |
CA Protection Suites | =r3 | |
CA Protection Suites | =r3.1 | |
Broadcom CA Threat Manager | =8.1 | |
Broadcom CA Threat Manager | =r8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0042 has a CVSS score indicating a medium level of severity due to its potential for remote exploitation.
To fix CVE-2009-0042, upgrade to a version of the Arclib library that is 7.3.0.15 or newer.
CVE-2009-0042 affects various versions of CA Anti-Virus and other Broadcom products, including the Anti-Virus for the Enterprise and Internet Security Suite.
Yes, CVE-2009-0042 allows remote attackers to bypass security measures, leading to potential exploitation.
CVE-2009-0042 is classified as a detection evasion vulnerability in the CA Anti-Virus engine.