Vulnerabilities > CVE-2006-6496 - Unspecified vulnerability in Broadcom Etrust Antivirus and Internet Security Suite
Attack vector
LOCAL Attack complexity
MEDIUM Privileges required
SINGLE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE local
broadcom
Summary
The (1) VetMONNT.sys and (2) VetFDDNT.sys drivers in CA Anti-Virus 2007 8.1, Anti-Virus for Vista Beta 8.2, and CA Internet Security Suite 2007 v3.0 do not properly handle NULL buffers, which allows local users with administrative access to cause a denial of service (system crash) via certain IOCTLs.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
References
- http://crm.my-etrust.com/CIDocument.asp?KDId=2651&GUID=9FD7E4F8362C4A168D88B4FFA34DCB4C
- http://secunia.com/advisories/23378
- http://securitytracker.com/id?1017381
- http://securitytracker.com/id?1017382
- http://www.osvdb.org/30845
- http://www.reversemode.com/index.php?option=com_remository&Itemid=2&func=fileinfo&id=41
- http://www.securityfocus.com/archive/1/454420/100/0/threaded
- http://www.securityfocus.com/bid/21593
- http://www.vupen.com/english/advisories/2006/5010
- http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=34870
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30909