CVE-2006-5172 Information

Description

Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5 Enterprise Backup 10.5 and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets aka the \Mediasvr.exe String Handling Overflow\ a different vulnerability than CVE-2006-5171.

Reference

http://osvdb.org/31320 http://secunia.com/advisories/23648 http://securitytracker.com/id?1017506 http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp http://www.iss.net/threats/253.html http://www.securityfocus.com/archive/1/456711 http://www.securityfocus.com/bid/22016 http://www.vupen.com/english/advisories/2007/0154 https://exchange.xforce.ibmcloud.com/vulnerabilities/29344

Share on: