Computer Associates Anti-Virus Engine Malformed CAB Filename Buffer Overflow Vulnerability

TITLE: Computer Associates Anti-Virus Engine Malformed CAB Filename Buffer Overflow Vulnerability
CLASS: Boundary Condition Error
CVE: CVE-2007-2863

REMOTE: Yes
LOCAL: No
PUBLISHED: Feb 07 2007 12:00AM
UPDATE: Jun 07 2007 05:20PM
CREDIT: An anonymous researcher reported this issue.
VULNERABLE:

Computer Associates Unicenter Network and Systems Management 3.1
Computer Associates Unicenter Network and Systems Management 3.0
Computer Associates Unicenter Network and Systems Management 11.1
Computer Associates Unicenter Network and Systems Management 11
Computer Associates Protection Suites r2 0
Computer Associates Protection Suites r3
Computer Associates Internet Security Suite 2007 3.0
Computer Associates Internet Security Suite 3.0
Computer Associates Internet Security Suite 2.0
Computer Associates Integrated Threat Management r8
Computer Associates eTrust Secure Content Manager 8.0
Computer Associates eTrust EZ Armor 3.1
Computer Associates eTrust EZ Armor 2.4.4
Computer Associates eTrust EZ Armor 2.4
Computer Associates eTrust EZ Armor 2.3
Computer Associates eTrust EZ Armor 2.0
Computer Associates eTrust EZ Armor 1.0
Computer Associates eTrust EZ Antivirus 7.0.5
Computer Associates eTrust EZ Antivirus 7.0.4
Computer Associates eTrust EZ Antivirus 7.0.3
Computer Associates eTrust EZ Antivirus 7.0.2 .1
Computer Associates eTrust EZ Antivirus 7.0.2
Computer Associates eTrust EZ Antivirus 7.0.1 .4
Computer Associates eTrust EZ Antivirus 7.0.1 .3
Computer Associates eTrust EZ Antivirus 7.0.1 .2
Computer Associates eTrust EZ Antivirus 7.0.1 .1
Computer Associates eTrust EZ Antivirus 7.0.1
Computer Associates eTrust EZ Antivirus 7.0
Computer Associates eTrust EZ Antivirus 6.1
Computer Associates eTrust Antivirus for the Gateway 7.1
Computer Associates eTrust Antivirus r8.1
Computer Associates eTrust Antivirus r8
Computer Associates Common Services 3.0
Computer Associates Common Services 2.2
Computer Associates Common Services 2.1
Computer Associates Common Services 2.0
Computer Associates Common Services 1.1
Computer Associates Common Services 1.0
Computer Associates BrightStor ARCServe Backup 11.1
Computer Associates BrightStor ARCServe Backup 9.01
Computer Associates BrightStor ARCServe Backup 11.5
Computer Associates BrightStor ARCServe Backup 11
Computer Associates BrightStor ARCServe Backup 10.5
Computer Associates Anti-Virus SDK 0
Computer Associates Anti-Virus 2007 8
NOT VULNERABLE:

Vai alla pagina originale su Security Focus

Discussion

Multiple Computer Associates products that implement the antivirus engine are prone to a stack-based buffer-overflow vulnerability. This issue occurs because the software fails to bounds-check user-supplied data before copying it into an insufficiently sized buffer.

An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will result in the complete compromise of affected computers. Failed exploit attempts will result in a denial-of-service condition.

Exploit

Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:vuldb@securityfocus.com.

Solution

Solution:
The vendor released an advisory and update 30.6 to address this issue. The update can be obtained through Content Updates. Please see the references for more information.

References

References:

PhpLog

BNLug Benevento Linux Users Group