CVE-2009-0682

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
19/08/2009
Last modified:
10/10/2018

Description

vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt.sys before 10.0.0.217 in Internet Security Suite r5 do not properly verify IOCTL calls, which allows local users to cause a denial of service (system crash) via a crafted call.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ca:internet_security_suite:*:r3:*:*:*:*:*:*
cpe:2.3:a:ca:internet_security_suite:9.0.0.184:r4:32bit:*:*:*:*:*
cpe:2.3:a:ca:internet_security_suite:10.0.0.217:r5:32bit:*:*:*:*:*