Title: CA BrightStor ARCserve Backup Agent for Windows Long String Overflow
Info
Disclosure
Aug 02, 2005
Discovery
Apr 25, 2005
Dates
Exploit
Aug 05, 2005
Solution
Sep 02, 2005
Description
A remote stack-based buffer overflow exists in Brightstor Arcserve. The agent software fails to validate user-supplied input resulting in a long string overflow. With a specially crafted request of 3168 bytes to port 6070, an attacker can execute arbitrary code with System privilege resulting in a loss of confidentiality and integrity.
Classification
Location:
Remote / Network Access
Attack Type:
Input Manipulation
Impact:
Loss of Confidentiality,
Loss of Integrity
Solution:
Patch / RCS
Exploit:
Exploit Public,
Exploit Commercial
Disclosure:
OSVDB Verified,
Vendor Verified
Solution
Currently, there are no known workarounds or upgrades to correct this issue. However, Computer Associates has released patches to address this vulnerability:
For ARCserve 11.1 apply fix QO70767.
For ARCserve 11 apply fix QO70769.
For ARCserve 9.01 apply fix QO70770.
For Enterprise 10.5 apply fix QO70774.
For Enterprise 10 apply fix QO70773.