CVE-2009-3587: Critical severity computer associates internet security suite vulnerability
Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted RAR archive file that triggers heap corruption, a different vulnerability than CVE-2009-3588.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3587?
CVE-2009-3587 has a high severity due to its impact on multiple CA Anti-Virus products.
How do I fix CVE-2009-3587?
To fix CVE-2009-3587, update your CA Anti-Virus software to the latest version as specified by Broadcom.
Which products are affected by CVE-2009-3587?
CVE-2009-3587 affects various versions of CA Anti-Virus for the Enterprise, eTrust Antivirus, and CA Internet Security Suite among others.
What type of vulnerability is CVE-2009-3587?
CVE-2009-3587 is classified as an unspecified vulnerability within the arclib component of the Anti-Virus engine.
Is there a workaround for CVE-2009-3587?
Currently, the best mitigation for CVE-2009-3587 is to apply the available patches or upgrade the affected software.