CVE-2005-1693
Summary
| CVE | CVE-2005-1693 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-05-24 04:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Integer overflow in Computer Associates Vet Antivirus library, as used by CA InoculateIT 6.0, eTrust Antivirus r6.0 through 7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, BrightStor ARCserve Backup (BAB) r11.1, Vet Antivirus, Zonelabs ZoneAlarm Security Suite, and ZoneAlarm Antivirus, allows remote attackers to gain privileges via a compressed VBA directory with a project name length of -1, which leads to a heap-based buffer overflow. |
Risk And Classification
Primary CVSS: v2.0 10 from [email protected]
AV:N/AC:L/Au:N/C:C/I:C/A:C
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Broadcom | Etrust Antivirus | 6.0 | All | All | All |
| Application | Broadcom | Etrust Antivirus | 7.0 | All | All | All |
| Application | Broadcom | Etrust Antivirus | 7.1 | All | All | All |
| Application | Broadcom | Etrust Antivirus Ee | 6.0 | All | All | All |
| Application | Broadcom | Etrust Antivirus Ee | 7.0 | All | All | All |
| Application | Broadcom | Etrust Ez Armor | 1.0 | All | All | All |
| Application | Broadcom | Etrust Ez Armor | 2.0 | All | All | All |
| Application | Broadcom | Etrust Ez Armor | 2.3 | All | All | All |
| Application | Broadcom | Etrust Ez Armor | 2.4 | All | All | All |
| Application | Broadcom | Etrust Ez Armor | 2.4.4 | All | All | All |
| Application | Broadcom | Etrust Ez Armor Le | 2.0 | All | All | All |
| Application | Broadcom | Etrust Ez Armor Le | 3.0.0.14 | All | All | All |
| Application | Broadcom | Etrust Intrusion Detection | 1.4.1.13 | All | All | All |
| Application | Broadcom | Etrust Intrusion Detection | 1.4.5 | All | All | All |
| Application | Broadcom | Etrust Intrusion Detection | 1.5 | All | All | All |
| Application | Broadcom | Etrust Intrusion Detection | 3.0 | All | All | All |
| Application | Broadcom | Etrust Secure Content Manager | 1.0 | All | All | All |
| Application | Broadcom | Etrust Secure Content Manager | 1.1 | All | All | All |
| Application | Broadcom | Inoculateit | 6.0 | All | All | All |
| Application | Ca | Brightstor Arcserve Backup | 11.1 | All | windows | All |
| Application | Ca | Etrust Antivirus | 7.0 | All | gateway | All |
| Application | Ca | Etrust Antivirus | 7.0_sp2 | All | All | All |
| Application | Ca | Etrust Antivirus | 7.1 | All | gateway | All |
| Application | Ca | Etrust Intrusion Detection | 3.0 | sp1 | All | All |
| Application | Ca | Etrust Secure Content Manager | 1.0 | sp1 | All | All |
| Application | Ca | Vet Antivirus | 10.66 | All | All | All |
| Application | Zonelabs | Zonealarm | All | All | All | All |
| Application | Zonelabs | Zonealarm Antivirus | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityTracker.com Archives - Computer Associates eTrust Antivirus Integer Overflow in Processing Microsoft OLE Data Lets Remote Users Execute Arbitrary Code | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| Secunia - Advisories - CA Multiple Products Vet Antivirus Engine Buffer Overflow | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| 'Computer Associates Vet Antivirus Library Remote Heap Overflow' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| rem0te.com | af854a3a-2127-422b-91ae-364da2661108 | www.rem0te.com | |
| Computer Associates Vet Library Remote Heap Overflow Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Vendor Advisory |
| Secunia - Advisories - Zonelabs ZoneAlarm Vet Antivirus Engine Buffer Overflow | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| crm.my-etrust.com/login.asp | af854a3a-2127-422b-91ae-364da2661108 | crm.my-etrust.com | Patch |
| Computer Associates Vet Antivirus engine heap overflow vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www3.ca.com | Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.