CVE-2009-0682
Last modified
CVE-2009-0682 is a vulnerability of currently unknown severity. vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt.sys before 10.0.0.217 in Internet Security Suite r5 do not properly verify IOCTL calls, which allows local users to cause a denial of service (system crash) via a crafted call.. EPSS estimates a 0.35% chance of exploitation in the next 30 days.
Description
vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt.sys before 10.0.0.217 in Internet Security Suite r5 do not properly verify IOCTL calls, which allows local users to cause a denial of service (system crash) via a crafted call.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Ca | Internet Security Suite | All versions | R3 |
| Ca | Internet Security Suite | 9.0.0.184 | R4 |
| Ca | Internet Security Suite | 10.0.0.217 | R5 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-0682?
How severe is CVE-2009-0682?
How do I fix CVE-2009-0682?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2009
- CVE-2009-0676The sock_getsockopt function in net/core/sock.c in the Linux…
- CVE-2009-0677avatarlist.php in the Your Account module, reached through m…
- CVE-2009-0678images/captcha.php in RavenNuke 2.30 allows remote attackers…
- CVE-2009-0679Cross-site scripting (XSS) vulnerability in the Your Account…
- CVE-2009-0680cgi-bin/welcome/VPN_only in the web interface in Netgear SSL…
- CVE-2009-0681PGP Desktop before 9.10 allows local users to (1) cause a de…
- CVE-2009-0686The TrendMicro Activity Monitor Module (tmactmon.sys) 2.52.0…
- CVE-2009-0687The pf_test_rule function in OpenBSD Packet Filter (PF), as …
- CVE-2009-0688Multiple buffer overflows in the CMU Cyrus SASL library befo…
- CVE-2009-0689Array index error in the (1) dtoa implementation in dtoa.c (…
- CVE-2009-0690The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 …
- CVE-2009-0691The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 …
Are you affected by CVE-2009-0682?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
