PT-2007-1180 · Mcafee · Mcafee Epolicy Orchestrator
Publicado
2007-07-12
·
Atualizado
2017-07-20
·
CVE-2006-5274
CVSS v2.0
7.6
Alta
| Vetor | AV:N/AC:H/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
McAfee ePolicy Orchestrator versions 3.5 through 3.6.1
ProtectionPilot versions 1.1.1 and 1.5
Common Management Agent (CMA) version 3.5.5.438
Description:
The issue is related to an integer overflow that allows remote attackers to cause a denial of service, potentially leading to the crash of the CMA Framework service, and possibly execute arbitrary code.
Recommendations:
For McAfee ePolicy Orchestrator versions 3.5 through 3.6.1, update to a version that fixes the integer overflow issue.
For ProtectionPilot versions 1.1.1 and 1.5, update to a version that fixes the integer overflow issue.
For Common Management Agent (CMA) version 3.5.5.438, update to a version that fixes the integer overflow issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Mcafee Epolicy Orchestrator