Vulnerability Details CVE-2009-3588
Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service via a crafted RAR archive file that triggers stack corruption, a different vulnerability than CVE-2009-3587.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.016
EPSS Ranking 80.5%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2009-3588
-
cpe:2.3:a:broadcom:anti-virus:2007
-
cpe:2.3:a:broadcom:anti-virus:2008
-
cpe:2.3:a:broadcom:anti-virus_for_the_enterprise:7.1
-
cpe:2.3:a:broadcom:anti-virus_for_the_enterprise:r8
-
cpe:2.3:a:broadcom:anti-virus_sdk:-
-
cpe:2.3:a:broadcom:arcserve_backup:r12.0
-
cpe:2.3:a:broadcom:common_services:11
-
cpe:2.3:a:broadcom:common_services:11.1
-
cpe:2.3:a:broadcom:etrust_antivirus:7.1
-
cpe:2.3:a:broadcom:etrust_antivirus:8
-
cpe:2.3:a:broadcom:etrust_antivirus:8.1
-
cpe:2.3:a:broadcom:etrust_integrated_threat_management:8.1
-
cpe:2.3:a:broadcom:etrust_intrusion_detection:3.0
-
cpe:2.3:a:broadcom:etrust_secure_content_manager:1.1
-
cpe:2.3:a:broadcom:internet_security_suite:-
-
cpe:2.3:a:broadcom:internet_security_suite:1.0
-
cpe:2.3:a:broadcom:internet_security_suite:2.0
-
cpe:2.3:a:broadcom:internet_security_suite:3.0
-
cpe:2.3:a:broadcom:network_and_systems_management:r11
-
cpe:2.3:a:broadcom:network_and_systems_management:r11.1
-
cpe:2.3:a:broadcom:network_and_systems_management:r3.0
-
cpe:2.3:a:broadcom:network_and_systems_management:r3.1
-
cpe:2.3:a:broadcom:secure_content_manager:1.1
-
cpe:2.3:a:broadcom:secure_content_manager:8.0
-
cpe:2.3:a:broadcom:unicenter_network_and_systems_management:11
-
cpe:2.3:a:broadcom:unicenter_network_and_systems_management:11.1
-
cpe:2.3:a:broadcom:unicenter_network_and_systems_management:3.0
-
cpe:2.3:a:broadcom:unicenter_network_and_systems_management:3.1
-
cpe:2.3:a:ca:anti-virus:2009
-
cpe:2.3:a:ca:anti-virus_for_the_enterprise:r8.1
-
cpe:2.3:a:ca:anti-virus_gateway:7.1
-
cpe:2.3:a:ca:anti-virus_plus:2009
-
cpe:2.3:a:ca:arcserve_backup:r11.1
-
cpe:2.3:a:ca:arcserve_backup:r11.5
-
cpe:2.3:a:ca:arcserve_for_windows_client_agent:*
-
cpe:2.3:a:ca:arcserve_for_windows_server_component:*
-
cpe:2.3:a:ca:common_services:3.1
-
cpe:2.3:a:ca:etrust_anti-virus_gateway:7.1
-
cpe:2.3:a:ca:etrust_anti-virus_sdk:*
-
cpe:2.3:a:ca:etrust_ez_antivirus:r7.1
-
cpe:2.3:a:ca:etrust_intrusion_detection:2.0
-
cpe:2.3:a:ca:etrust_intrusion_detection:3.0
-
cpe:2.3:a:ca:etrust_secure_content_manager:8.0
-
cpe:2.3:a:ca:gateway_security:r8.1
-
cpe:2.3:a:ca:internet_security_suite_2008:*
-
cpe:2.3:a:ca:internet_security_suite_plus_2008:*
-
cpe:2.3:a:ca:internet_security_suite_plus_2009:*
-
cpe:2.3:a:ca:protection_suites:r2
-
cpe:2.3:a:ca:protection_suites:r3
-
cpe:2.3:a:ca:protection_suites:r3.1
-
cpe:2.3:a:ca:threat_manager:8.1
-
cpe:2.3:a:ca:threat_manager:r8
-
cpe:2.3:a:ca:threat_manager_total_defense:*
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-
-
cpe:2.3:o:microsoft:windows:1.0
-
cpe:2.3:o:microsoft:windows:2.0
-
cpe:2.3:o:microsoft:windows:2000
-
cpe:2.3:o:microsoft:windows:3.0
-
cpe:2.3:o:microsoft:windows:3.1
-
cpe:2.3:o:microsoft:windows:3.11
-
cpe:2.3:o:microsoft:windows:server_2008
-
cpe:2.3:o:microsoft:windows:vista