CA杀毒引擎畸形CAB文件名远程栈溢出漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

Computer Associates是世界领先的安全厂商,产品包括多种杀毒软件及备份恢复系统。 多个CA产品的杀毒引擎在解析畸形内容的.CAB文档时存在栈溢出漏洞,远程攻击者可能利用此漏洞控制系统, 软件包中vete.dll模块如果处理了.CAB文档中的超长文件名,就会触发这个溢出,导致执行任意指令。 Computer Associates BrightStor ARCserve Backup R11.5 Computer Associates BrightStor ARCserve Backup R11.1 Computer Associates BrightStor ARCserve Backup r11.0 for Windows Computer Associates BrightStor ARCserve Backup r10.5 Computer Associates BrightStor ARCserve Backup 9.01 Computer Associates Anti-Virus SDK Computer Associates Anti-Virus Gateway 7.1 Computer Associates Anti-Virus for the Enterprise r8.1 Computer Associates Anti-Virus for the Enterprise r8 Computer Associates Anti-Virus 2007 (v8) Computer Associates Internet Security Suite 2007 v3.0 Computer Associates Protection Suites r3 Computer Associates Protection Suites r2 Computer Associates eTrust EZ Antivirus r7 Computer Associates eTrust EZ Antivirus r6.1 Computer Associates eTrust Internet Security Suite r2 Computer Associates eTrust Internet Security Suite r1 Computer...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息