CA.BrightStor.ARCserve.Tape.Engine.RPC.Buffer.Overflow

description-logoDescription

This indicates an attack attempt against a buffer-overflow vulnearability in Computer Associates BrightStor ARCserve Backup.
The vulnerability is due to the software's inability to properly handle malformed data. A remote attacker could execute arbitrary code on the system with SYSTEM privileges via a specially crafted RPC request to the Tape Engine.

affected-products-logoAffected Products

CA BrightStor ARCserve Backup r11.5
CA BrightStor ARCserve Backup r11.1
CA BrightStor ARCserve Backup for Windows r11
CA BrightStor Enterprise Backup r10.5
CA BrightStor ARCserve Backup 9.01

Impact logoImpact

Gain access

recomended-action-logoRecommended Actions

Apply the appropriate patch.
BrightStor ARCserve Backup r11.5 :
BrightStor ARCserve Backup r11.1 :
BrightStor ARCserve Backup for Windows r11 :
BrightStor Enterprise Backup r10.5 :
BrightStor ARCserve Backup v9.01 :

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)