Computer Associates BrightStor ARCserve Backup Tape Engine Service
Publish Date: 21 juillet 2015
Gravité: : Critique
Identifiant(s) CVE: : CVE-2006-6076
Date du conseil: 21 juillet 2015
Description
Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows remote attackers to execute arbitrary code via certain RPC requests to TCP port 6502.
Information Exposure Rating:
A denial-of-service condition may also result from exploit attempts.
Solutions
Trend Micro Deep Security DPI Rule Number: 1000903
Trend Micro Deep Security DPI Rule Name: 1000903 - CA BrightStor ARCserve Backup Tape Engine Remote Buffer Overflow
Affected software and version:
- Computer Associates BrightStor ARCServe Backup 11
- Computer Associates BrightStor ARCServe Backup 11.1
- Computer Associates BrightStor ARCServe Backup 11.5
- Computer Associates BrightStor ARCServe Backup 11.5 SP1
- Computer Associates BrightStor ARCserve Backup Agent SQL 11.0
- Computer Associates BrightStor ARCserve Backup Agent SQL 11.1