PT-2007-6401 · Ca · Ca Brightstor Arcserve Backup+1

Publicado

2007-10-13

·

Atualizado

2021-04-07

·

CVE-2007-5330

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: CA BrightStor ARCServe BackUp versions 9.01 through 11.5 CA Enterprise Backup version 10.5
Description: The issue allows remote attackers to execute arbitrary code via stack-based buffer overflows in unspecified RPC procedures and trigger memory corruption related to the use of handle RPC arguments as pointers.
Recommendations: For CA BrightStor ARCServe BackUp versions 9.01 through 11.5, consider disabling the cadbd RPC service until a patch is available. For CA Enterprise Backup version 10.5, restrict access to the cadbd RPC service to minimize the risk of exploitation.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-5330

Produtos afetados

Ca Brightstor Arcserve Backup
Ca Enterprise Backup