CVE-2009-0042
Summary
| CVE | CVE-2009-0042 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2009-01-28 01:30:00 UTC |
| Updated | 2021-04-09 18:53:00 UTC |
| Description | Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA products allow remote attackers to bypass virus detection via a malformed archive file. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Broadcom | Anti-spyware | 2007 | All | All | All |
| Application | Broadcom | Anti-spyware | 2008 | All | All | All |
| Application | Broadcom | Anti-spyware For The Enterprise | 8.1 | All | All | All |
| Application | Broadcom | Anti-spyware For The Enterprise | r8 | All | All | All |
| Application | Broadcom | Anti-virus | 2007 | 8 | All | All |
| Application | Broadcom | Anti-virus | 2008 | All | All | All |
| Application | Broadcom | Anti-virus For The Enterprise | 7.1 | All | All | All |
| Application | Broadcom | Anti-virus For The Enterprise | 8.1 | All | All | All |
| Application | Broadcom | Anti-virus For The Enterprise | r8 | All | All | All |
| Application | Broadcom | Anti-virus Sdk | All | All | All | All |
| Application | Broadcom | Antivirus Gateway | 7.1 | All | All | All |
| Application | Broadcom | Arcserve Client Agent | - | All | windows | All |
| Application | Broadcom | Common Services | 11 | All | All | All |
| Application | Broadcom | Common Services | 11.1 | All | All | All |
| Application | Broadcom | Etrust Ez Antivirus | r6.1 | All | All | All |
| Application | Broadcom | Etrust Ez Antivirus | r7 | All | All | All |
| Application | Broadcom | Etrust Intrusion Detection | 3.0 | All | All | All |
| Application | Broadcom | Etrust Intrusion Detection | 4.0 | All | All | All |
| Application | Broadcom | Network And Systems Management | r11 | All | All | All |
| Application | Broadcom | Network And Systems Management | r11.1 | All | All | All |
| Application | Broadcom | Network And Systems Management | r3.0 | All | All | All |
| Application | Broadcom | Network And Systems Management | r3.1 | All | All | All |
| Application | Broadcom | Secure Content Manager | 8.0 | All | All | All |
| Application | Broadcom | Secure Content Manager | 8.1 | All | All | All |
| Application | Ca | Anti-spyware | 2007 | All | All | All |
| Application | Ca | Anti-spyware | 2008 | All | All | All |
| Application | Ca | Anti-spyware | 2007 | All | All | All |
| Application | Ca | Anti-spyware | 2008 | All | All | All |
| Application | Ca | Anti-spyware For The Enterprise | 8.1 | All | All | All |
| Application | Ca | Anti-spyware For The Enterprise | r8 | All | All | All |
| Application | Ca | Anti-spyware For The Enterprise | 8.1 | All | All | All |
| Application | Ca | Anti-spyware For The Enterprise | r8 | All | All | All |
| Application | Ca | Anti-virus | 2007 | 8 | All | All |
| Application | Ca | Anti-virus | 2008 | All | All | All |
| Application | Ca | Anti-virus | 2007 | 8 | All | All |
| Application | Ca | Anti-virus | 2008 | All | All | All |
| Application | Ca | Anti-virus For The Enterprise | 7.1 | All | All | All |
| Application | Ca | Anti-virus For The Enterprise | 8.1 | All | All | All |
| Application | Ca | Anti-virus For The Enterprise | r8 | All | All | All |
| Application | Ca | Anti-virus For The Enterprise | 7.1 | All | All | All |
| Application | Ca | Anti-virus For The Enterprise | 8.1 | All | All | All |
| Application | Ca | Anti-virus For The Enterprise | r8 | All | All | All |
| Application | Ca | Anti-virus Sdk | All | All | All | All |
| Application | Ca | Anti-virus Sdk | All | All | All | All |
| Application | Ca | Antivirus Gateway | 7.1 | All | All | All |
| Application | Ca | Antivirus Gateway | 7.1 | All | All | All |
| Application | Ca | Arcserve Backup | r11.1 | _nil_ | linux | All |
| Application | Ca | Arcserve Backup | r11.1 | _nil_ | windows | All |
| Application | Ca | Arcserve Backup | r11.5_nil_ | linux | All | All |
| Application | Ca | Arcserve Backup | r11.5_nil_ | windows | All | All |
| Application | Ca | Arcserve Backup | r12.0_nil_ | windows | All | All |
| Application | Ca | Arcserve Backup | r11.1 | _nil_ | linux | All |
| Application | Ca | Arcserve Backup | r11.1 | _nil_ | windows | All |
| Application | Ca | Arcserve Backup | r11.5_nil_ | linux | All | All |
| Application | Ca | Arcserve Backup | r11.5_nil_ | windows | All | All |
| Application | Ca | Arcserve Backup | r12.0_nil_ | windows | All | All |
| Application | Ca | Arcserve Client Agent | - | All | windows | All |
| Application | Ca | Arcserve Client Agent | - | All | windows | All |
| Application | Ca | Common Services | 11 | All | All | All |
| Application | Ca | Common Services | 11.1 | All | All | All |
| Application | Ca | Common Services | 11 | All | All | All |
| Application | Ca | Common Services | 11.1 | All | All | All |
| Application | Ca | Etrust Ez Antivirus | r6.1 | All | All | All |
| Application | Ca | Etrust Ez Antivirus | r7 | All | All | All |
| Application | Ca | Etrust Ez Antivirus | r6.1 | All | All | All |
| Application | Ca | Etrust Ez Antivirus | r7 | All | All | All |
| Application | Ca | Etrust Intrusion Detection | 2.0 | sp1 | All | All |
| Application | Ca | Etrust Intrusion Detection | 3.0 | All | All | All |
| Application | Ca | Etrust Intrusion Detection | 3.0 | sp1 | All | All |
| Application | Ca | Etrust Intrusion Detection | 4.0 | All | All | All |
| Application | Ca | Etrust Intrusion Detection | 2.0 | sp1 | All | All |
| Application | Ca | Etrust Intrusion Detection | 3.0 | All | All | All |
| Application | Ca | Etrust Intrusion Detection | 3.0 | sp1 | All | All |
| Application | Ca | Etrust Intrusion Detection | 4.0 | All | All | All |
| Application | Ca | Internet Security Suite 2007 | 3 | All | All | All |
| Application | Ca | Internet Security Suite 2007 | 3 | All | All | All |
| Application | Ca | Internet Security Suite 2008 | All | All | All | All |
| Application | Ca | Internet Security Suite 2008 | All | All | All | All |
| Application | Ca | Internet Security Suite Plus 2008 | All | All | All | All |
| Application | Ca | Internet Security Suite Plus 2008 | All | All | All | All |
| Application | Ca | Network And Systems Management | r11 | All | All | All |
| Application | Ca | Network And Systems Management | r11.1 | All | All | All |
| Application | Ca | Network And Systems Management | r3.0 | All | All | All |
| Application | Ca | Network And Systems Management | r3.1 | All | All | All |
| Application | Ca | Network And Systems Management | r11 | All | All | All |
| Application | Ca | Network And Systems Management | r11.1 | All | All | All |
| Application | Ca | Network And Systems Management | r3.0 | All | All | All |
| Application | Ca | Network And Systems Management | r3.1 | All | All | All |
| Application | Ca | Protection Suites | r2 | All | All | All |
| Application | Ca | Protection Suites | r3 | All | All | All |
| Application | Ca | Protection Suites | r3.1 | All | All | All |
| Application | Ca | Protection Suites | r2 | All | All | All |
| Application | Ca | Protection Suites | r3 | All | All | All |
| Application | Ca | Protection Suites | r3.1 | All | All | All |
| Application | Ca | Secure Content Manager | 8.0 | All | All | All |
| Application | Ca | Secure Content Manager | 8.1 | All | All | All |
| Application | Ca | Secure Content Manager | 8.0 | All | All | All |
| Application | Ca | Secure Content Manager | 8.1 | All | All | All |
| Application | Ca | Threat Manager For The Enterprise | 8.1 | All | All | All |
| Application | Ca | Threat Manager For The Enterprise | r8 | All | All | All |
| Application | Ca | Threat Manager For The Enterprise | 8.1 | All | All | All |
| Application | Ca | Threat Manager For The Enterprise | r8 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 404 Not Found | CONFIRM | support.ca.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| CA Anti-Virus Arclib Bug Lets Remote Users Bypass Malware Detection - SecurityTracker | SECTRACK | www.securitytracker.com | |
| Computer Associates Anti-Virus Engine 'arclib.dll' Multiple Scan Evasion Vulnerabilities | BID | www.securityfocus.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CA20090126-01: CA Anti-Virus Engine Detection Evasion Multiple Vulnerabilities - CA Security Response Blog | CONFIRM | community.ca.com | Vendor Advisory |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.