PT-2006-1379 · Ca · Ca Unicenter Remote Control+5

Published

2006-01-19

·

Updated

2024-02-14

·

CVE-2006-0306

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions CA BrightStor Mobile Backup version r4.0 CA BrightStor ARCserve Backup for Laptops & Desktops versions r11.0 through r11.1 SP1 CA Unicenter Remote Control versions 6.0 through 6.0 SP1 CA Desktop Protection Suite version r2 CA Server Protection Suite version r2 CA Business Protection Suite version r2
Description The issue allows remote attackers to cause a denial of service, resulting in CPU consumption or application hang, by sending a large network packet. This packet causes a WSAEMESGSIZE error code that is not handled, leading to a thread exit.
Recommendations For CA BrightStor Mobile Backup version r4.0, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit. For CA BrightStor ARCserve Backup for Laptops & Desktops versions r11.0 through r11.1 SP1, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit. For CA Unicenter Remote Control versions 6.0 through 6.0 SP1, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit. For CA Desktop Protection Suite version r2, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit. For CA Server Protection Suite version r2, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit. For CA Business Protection Suite version r2, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2006-0306

Affected Products

Ca Brightstor Arcserve Backup For Laptops/Desktops
Ca Brightstor Mobile Backup
Ca Business Protection Suite
Ca Desktop Protection Suite
Ca Server Protection Suite
Ca Unicenter Remote Control