CVE-2007-3334 Information

Description

Multiple heap-based buffer overflows in the (1) Communications Server (iigcc.exe) and (2) Data Access Server (iigcd.exe) components for Ingres Database Server 3.0.3 as used in CA (Computer Associates) products including eTrust Secure Content Manager r8 on Windows allow remote attackers to execute arbitrary code via unknown vectors.

Reference

http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=546 http://osvdb.org/37487 http://osvdb.org/37488 http://secunia.com/advisories/25756 http://secunia.com/advisories/25775 http://supportconnectw.ca.com/public/ca_common_docs/ingresvuln_letter.asp http://www.ca.com/us/securityadvisor/newsinfo/collateral.aspx?cid=145778 http://www.securityfocus.com/bid/24585 http://www.securitytracker.com/id?1018278 http://www.vupen.com/english/advisories/2007/2288 http://www.vupen.com/english/advisories/2007/2290 https://exchange.xforce.ibmcloud.com/vulnerabilities/34991 https://exchange.xforce.ibmcloud.com/vulnerabilities/34992 https://exchange.xforce.ibmcloud.com/vulnerabilities/35002

Share on: