PT-2006-1379 · Ca · Ca Unicenter Remote Control+5
Published
2006-01-19
·
Updated
2024-02-14
·
CVE-2006-0306
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
CA BrightStor Mobile Backup version r4.0
CA BrightStor ARCserve Backup for Laptops & Desktops versions r11.0 through r11.1 SP1
CA Unicenter Remote Control versions 6.0 through 6.0 SP1
CA Desktop Protection Suite version r2
CA Server Protection Suite version r2
CA Business Protection Suite version r2
Description
The issue allows remote attackers to cause a denial of service, resulting in CPU consumption or application hang, by sending a large network packet. This packet causes a WSAEMESGSIZE error code that is not handled, leading to a thread exit.
Recommendations
For CA BrightStor Mobile Backup version r4.0, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit.
For CA BrightStor ARCserve Backup for Laptops & Desktops versions r11.0 through r11.1 SP1, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit.
For CA Unicenter Remote Control versions 6.0 through 6.0 SP1, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit.
For CA Desktop Protection Suite version r2, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit.
For CA Server Protection Suite version r2, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit.
For CA Business Protection Suite version r2, update to a version that handles the WSAEMESGSIZE error code properly to prevent thread exit.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ca Brightstor Arcserve Backup For Laptops/Desktops
Ca Brightstor Mobile Backup
Ca Business Protection Suite
Ca Desktop Protection Suite
Ca Server Protection Suite
Ca Unicenter Remote Control