Back to Database
Status published
Critical
CVE-2009-4225
Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9...
Vulnerability Description
Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrary code via a long argument to the Initialize method.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2009-4225
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.metasploit.com/redmine/projects/framework/repository/revisions/7167/entry/modules/exploits/windows/fileformat/etrust_pestscan.rb
- http://www.fortiguard.com/encyclopedia/vulnerability/ca.etrust.pestpatrol.ppctl.dll.activex.access.html
- http://www.securityfocus.com/bid/37133
- https://exchange.xforce.ibmcloud.com/vulnerabilities/54458
More from ca
View All →CVE-2021-28250
CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege...
High
7.8
CVE-2021-28249
CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege...
High
8.8
CVE-2021-28247
CA eHealth Performance Manager through 6.3.2.12 is affected by Cross...
Medium
5.4
CVE-2017-8391
The OS Installation Management component in CA Client Automation r12.9,...
Medium
5.5
CVE-2016-9165
The get_sessions servlet in CA Unified Infrastructure Management (formerly CA...
High
7.5
Affected Vendor
Affected Software
etrust pestpatrole ppctl.dll activex
Vulnerable Versions:
5.6.7.9
Timeline
Official Publish:
December 8th, 2009
Last Modified:
August 7th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.