PT-2007-6401 · Ca · Ca Brightstor Arcserve Backup+1
Published
2007-10-13
·
Updated
2021-04-07
·
CVE-2007-5330
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
CA BrightStor ARCServe BackUp versions 9.01 through 11.5
CA Enterprise Backup version 10.5
Description:
The issue allows remote attackers to execute arbitrary code via stack-based buffer overflows in unspecified RPC procedures and trigger memory corruption related to the use of
handle RPC arguments as pointers.Recommendations:
For CA BrightStor ARCServe BackUp versions 9.01 through 11.5, consider disabling the cadbd RPC service until a patch is available.
For CA Enterprise Backup version 10.5, restrict access to the cadbd RPC service to minimize the risk of exploitation.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ca Brightstor Arcserve Backup
Ca Enterprise Backup