CVE-2009-0682: Input Validation
vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt.sys before 10.0.0.217 in Internet Security Suite r5 do not properly verify IOCTL calls, which allows local users to cause a denial of service (system crash) via a crafted call.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0682?
CVE-2009-0682 is classified as a high severity vulnerability due to its potential to cause a denial of service.
How can I mitigate CVE-2009-0682?
To mitigate CVE-2009-0682, upgrade to CA Internet Security Suite versions 9.0.0.184 or 10.0.0.217 or later.
Which versions of CA Internet Security Suite are affected by CVE-2009-0682?
CVE-2009-0682 affects CA Internet Security Suite r3, and versions r4 and r5 prior to specific updates.
What impact does CVE-2009-0682 have on systems?
CVE-2009-0682 can lead to a system crash through improper handling of IOCTL calls.
Is CVE-2009-0682 a local or remote vulnerability?
CVE-2009-0682 is a local vulnerability that requires access by an authenticated user to exploit.