CA BrightStor ARCserve Backup Agent For MS SQL Server Buffer Overflow
3 Aug. 2005
Summary
"BrightStor ARCserve Backup provides backup and restore protection for all classes of Windows, NetWare, Linux and UNIX servers, as well as Windows, Mac OS X, Linux, UNIX, AS/400 and VMS client environments". Remote exploitation of a buffer overflow vulnerability in Computer Associates International Inc's BrightStor ARCserve Backup UniversalAgent allow attackers to execute arbitrary code.
Vulnerable Systems:
* CA BrightStor ARCserve Backup Agent for Microsoft SQL Server version 11.0
When a string with a length over 3168 bytes, is sent to the listening port (6070 by default) a stack based buffer overflow occurs. Successful exploitation allows remote attackers to execute arbitrary code with SYSTEM level privileges.
Workaround:
Restrict remote access at the network boundary, unless remote parties require service. Access to the affected host should be filtered at the network boundary if global accessibility is not required.