First published: Wed Aug 19 2009(Updated: )
vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt.sys before 10.0.0.217 in Internet Security Suite r5 do not properly verify IOCTL calls, which allows local users to cause a denial of service (system crash) via a crafted call.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Internet Security Suite | =r3 | |
Broadcom Internet Security Suite | =9.0.0.184-r4 | |
Broadcom Internet Security Suite | =10.0.0.217-r5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0682 is classified as a high severity vulnerability due to its potential to cause a denial of service.
To mitigate CVE-2009-0682, upgrade to CA Internet Security Suite versions 9.0.0.184 or 10.0.0.217 or later.
CVE-2009-0682 affects CA Internet Security Suite r3, and versions r4 and r5 prior to specific updates.
CVE-2009-0682 can lead to a system crash through improper handling of IOCTL calls.
CVE-2009-0682 is a local vulnerability that requires access by an authenticated user to exploit.