|
Brought to you by:
Suppliers of:
|
|
|
| |
| "BrightStor ARCserve Backup provides backup and restore protection for all classes of Windows, NetWare, Linux and UNIX servers, as well as Windows, Mac OS X, Linux, UNIX, AS/400 and VMS client environments". Remote exploitation of a buffer overflow vulnerability in Computer Associates International Inc's BrightStor ARCserve Backup UniversalAgent allow attackers to execute arbitrary code. |
| |
Credit:
The information has been provided by idefense.
The original article can be found at: http://www.idefense.com/application/poi/display?id=287&type=vulnerabilities.
The vendor advisory can be found at: http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=33239.
|
| |
Vulnerable Systems:
* CA BrightStor ARCserve Backup Agent for Microsoft SQL Server version 11.0
When a string with a length over 3168 bytes, is sent to the listening port (6070 by default) a stack based buffer overflow occurs. Successful exploitation allows remote attackers to execute arbitrary code with SYSTEM level privileges.
Workaround:
Restrict remote access at the network boundary, unless remote parties require service. Access to the affected host should be filtered at the network boundary if global accessibility is not required.
CVE Information:
CAN-2005-1272
Disclosure Timeline:
04/25/2005 - Initial vendor notification
04/25/2005 - Initial vendor response
08/02/2005 - Coordinated public disclosure
|
|
|
|
|