CVE-2006-6076 Information

Description

Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows remote attackers to execute arbitrary code via certain RPC requests to TCP port 6502.

Reference

http://lists.grok.org.uk/pipermail/full-disclosure/2006-November/050808.html http://lists.grok.org.uk/pipermail/full-disclosure/2006-November/050814.html http://secunia.com/advisories/23060 http://secunia.com/advisories/24512 http://securitytracker.com/id?1017268 http://supportconnectw.ca.com/public/storage/infodocs/babtapeng-securitynotice.asp http://www.kb.cert.org/vuls/id/437300 http://www.securityfocus.com/archive/1/452222/100/0/threaded http://www.securityfocus.com/archive/1/452318/100/0/threaded http://www.securityfocus.com/archive/1/456711 http://www.securityfocus.com/bid/21221 http://www.vupen.com/english/advisories/2006/4654 http://www3.ca.com/securityadvisor/newsinfo/collateral.aspx?cid=101317 http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=34817 https://exchange.xforce.ibmcloud.com/vulnerabilities/30453

Share on: