Gravité: : Critique
  Identifiant(s) CVE: : CVE-2006-6076
  Date du conseil: 21 juillet 2015

  Description

Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows remote attackers to execute arbitrary code via certain RPC requests to TCP port 6502.

  Information Exposure Rating:

A denial-of-service condition may also result from exploit attempts.

  Solutions

  Trend Micro Deep Security DPI Rule Number: 1000903
  Trend Micro Deep Security DPI Rule Name: 1000903 - CA BrightStor ARCserve Backup Tape Engine Remote Buffer Overflow

  Affected software and version:

  • Computer Associates BrightStor ARCServe Backup 11
  • Computer Associates BrightStor ARCServe Backup 11.1
  • Computer Associates BrightStor ARCServe Backup 11.5
  • Computer Associates BrightStor ARCServe Backup 11.5 SP1
  • Computer Associates BrightStor ARCserve Backup Agent SQL 11.0
  • Computer Associates BrightStor ARCserve Backup Agent SQL 11.1