CVE-2007-2864
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.
Published:Jun 6, 2007
Last Modified:Apr 23, 2026
EPS:Jun 6, 2007
EPSS Score:0.80327
CVSS Score:9.3
Affected Products
Vendor
Product
Action
Vendor
Broadcom
Product
Anti-virus For The Enterprise
Broadcom
Anti-virus For The Enterprise
Vendor
Broadcom
Product
Brightstor Arcserve Backup
Broadcom
Brightstor Arcserve Backup
Vendor
Broadcom
Product
Common Services
Broadcom
Common Services
Vendor
Broadcom
Product
Etrust Antivirus
Broadcom
Etrust Antivirus
Vendor
Broadcom
Product
Etrust Antivirus Gateway
Broadcom
Etrust Antivirus Gateway
Vendor
Broadcom
Product
Etrust Antivirus Sdk
Broadcom
Etrust Antivirus Sdk
Vendor
Broadcom
Product
Etrust Ez Antivirus
Broadcom
Etrust Ez Antivirus
Vendor
Broadcom
Product
Etrust Ez Armor
Broadcom
Etrust Ez Armor
Vendor
Broadcom
Product
Integrated Threat Management
Broadcom
Integrated Threat Management
Vendor
Broadcom
Product
Internet Security Suite
Broadcom
Internet Security Suite
Vendor
Broadcom
Product
Unicenter Network And Systems Management
Broadcom
Unicenter Network And Systems Management
Vendor
Ca
Product
Etrust Secure Content Manager
Ca
Etrust Secure Content Manager
Vendor
Ca
Product
Protection Suites
Ca
Protection Suites
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
