TUCoPS :: Security App Flaws :: b06-5093.htm

CA BrightStor ARCserve Backup Remote Buffer Overflow Vulnerability
LS-20060330 - CA BrightStor ARCserve Backup Remote Buffer Overflow Vulnerability
LS-20060330 - CA BrightStor ARCserve Backup Remote Buffer Overflow Vulnerability



Overview:
LSsec has discovered a vulnerability in Computer Associates BrightStor ARCserve Backup, which could be exploited by an anonymous attacker in order to execute arbitrary code with SYSTEM privileges on an affected system. The flaw specifically exists within the Message Engine (msgeng.exe) due to incorrect handling of RPC requests on TCP port 6503. The interface is identified by
dc246bf0-7a7a-11ce-9f88-00805fe43838. Opnum 45 specifies the vulnerable operation within this interface.

Advisory:

http://www.lssec.com/advisories/LS-20060330.pdf 

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH