VRDA Feed by JPCERT/CC
  Vulnerability Response Decision Assistance Feed : Information for vulnerability impact analysis
[ about VRDA Feed | JPCERT/CC



 
Vulnerability Analysis Result (Revision No : 1) [ Download XML
JVNDB-2009-002629     ( CVE-2009-3588 | CVE-2009-3588 )
複数の CA 製品の Anti-Virus エンジン内にある arclib コンポーネントおけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002629.html

Original

複数の CA 製品の Anti-Virus エンジン内にある arclib コンポーネントには、RAR アーカイブファイルに関する処理に不備があるため、サービス運用妨害 (DoS) 状態となる脆弱性が存在します。 本脆弱性は、CVE-2009-3587 とは異なる脆弱性です。

Translation   (Show)





About This Analysis Information
Analysis Information Provider:
JVN iPedia
First Published:
2010-12-27
Source Information Category:
Advisory, Alert
Last Updated:
2010-12-27




Affected Product Tags
cpe:/a:ca:anti-virus_for_the_enterprise
cpe:/a:ca:anti-virus_gateway
cpe:/a:ca:anti-virus_plus
cpe:/a:ca:anti-virus_sdk
cpe:/a:ca:arcserve_backup
cpe:/a:ca:arcserve_for_windows_client_agent
cpe:/a:ca:arcserve_for_windows_server_component
cpe:/a:ca:common_services
cpe:/a:ca:etrust_antivirus
cpe:/a:ca:etrust_ez_antivirus
cpe:/a:ca:etrust_intrusion_detection
cpe:/a:ca:gateway_security
cpe:/a:ca:internet_security_suite
cpe:/a:ca:internet_security_suite_plus_2008
cpe:/a:ca:internet_security_suite_plus_2009
cpe:/a:ca:network_and_systems_management
cpe:/a:ca:protection_suites
cpe:/a:ca:secure_content_manager
cpe:/a:ca:threat_manager_for_the_enterprise
cpe:/a:ca:threat_manager_total_defense
 


Vulnerability Analysis Results
[Access Vector]  [?]
Undefined [?]

Local [?]
Adjacent Network [?]
X Network [?]

[Access Complexit]  [?]
Undefined [?]

High [?]
X Medium [?]
Low [?]

[Authentication]  [?]
Undefined [?]

Multiple [?]
Single [?]
X None [?]

[Confidentiality Impact]  [?]
Undefined [?]

X None [?]
Partial [?]
Complete [?]

[Integrity Impact]  [?]
Undefined [?]

X None [?]
Partial [?]
Complete [?]

[Availability Impact]  [?]
Undefined [?]

None [?]
X Partial [?]
Complete [?]

Alternatives
Common Vulnerabilities and Exposures (CVE) CVE-2009-3588




National Vulnerability Database (NVD) CVE-2009-3588








References
CA SUPPORT ONLINE 218878




ISS X-Force Database 53698




Secunia Advisory SA36976




SecurityFocus 36653




SecurityTracker 1022999




VUPEN Security VUPEN/ADV-2009-2852




共通脆弱性タイプ一覧 (CWE) 情報不足 (CWE-noinfo)





Copyright © 2010 JPCERT/CC All Rights Reserved.