Friday, April 04, 2008 10:55 AM cmosby

CA Products Alert Notification Server Multiple Vulnerabilities - Advisories - Secunia

 

A Products Alert Notification Server Multiple Vulnerabilities
Advisory Available in German

Secunia Advisory:
SA29665

Release Date:
2008-04-04

Critical:

Less critical

Impact:
DoS
System access

Where:
From local network

Solution Status:
Vendor Patch

Software:
BrightStor ARCserve Backup 11.x
BrightStor ARCserve Backup 11.x (for Microsoft SQL Server)
BrightStor ARCserve Backup 11.x (for Open Files)
BrightStor ARCserve Backup 11.x (for Oracle)
BrightStor ARCserve Backup 11.x (for Windows)
CA Anti-Virus for the Enterprise 8.x
CA Threat Manager 8.x
eTrust Antivirus 7.x

CVE reference:
CVE-2007-4620 (Secunia mirror)

Description:
Some vulnerabilities have been reported in various CA products, which can be exploited by malicious users to cause a DoS (Denial of Service) or to compromise a vulnerable system.

The vulnerabilities are caused due to boundary errors within multiple procedures in the CA Alert Notification Server service, which can be exploited to cause buffer overflows.

Successful exploitation allows execution of arbitrary code, but requires valid user credentials.

The vulnerabilities are reported in the following products:
* CA Anti-Virus for the Enterprise 7.1
* CA Threat Manager for the Enterprise (formerly eTrust Integrated Threat Management) r8
* CA Threat Manager for the Enterprise (formerly eTrust Integrated Threat Management) r8.1
* CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) r8
* CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) r8.1
* BrightStor ARCserve Backup r11.5
* BrightStor ARCserve Backup r11.1
* BrightStor ARCserve Backup r11 for Windows

Do you have this product installed on your home computer? Scan using the free Personal Software Inspector. Check if a vulnerable version is installed on computers in your corporate network, scan using the Network Software Inspector.

Solution:
Apply updates.

CA Anti-Virus for the Enterprise 7.1, CA Anti-Virus for the Enterprise r8:
Apply QO96079.
https://support.ca.com/irj/portal/ano...s?reqPage=search&searchID=QO96079

CA Threat Manager for the Enterprise r8:
Apply QO96387.
https://support.ca.com/irj/portal/ano...s?reqPage=search&searchID=QO96387

CA Anti-Virus for the Enterprise r8.1, CA Threat Manager for the Enterprise r8.1:
Apply QO96080.
https://support.ca.com/irj/portal/ano...s?reqPage=search&searchID=QO96080

BrightStor ARCserve Backup r11.5, BrightStor ARCserve Backup r11.1:
Apply QO96079.
https://support.ca.com/irj/portal/ano...s?reqPage=search&searchID=QO96079

BrightStor ARCserve Backup r11.0:
Upgrade to 11.1 and apply the latest patches.

Provided and/or discovered by:
The vendor credits an anonymous researcher working with iDefense VCP.

Original Advisory:
https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=173103
http://community.ca.com/blogs/casecur...-server-multiple-vulnerabilities.aspx

Source: CA Products Alert Notification Server Multiple Vulnerabilities - Advisories - Secunia

Filed under: , ,

Comments

No Comments