Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CA CAB文件头解析远程栈溢出漏洞
Vulnerability Description
Computer Associates是世界领先的安全厂商,产品包括多种杀毒软件及备份恢复系统。 多个CA产品的杀毒引擎在解析包含畸形字段的.CAB文档时存在缓冲区溢出漏洞,远程攻击者可能利用此漏洞控制系统。 如果.CAB文档中包含有超长coffFiles字段的话,就可能在解析此文档时触发这个溢出,导致执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A