Friday, April 04, 2008 10:55 AM
cmosby
CA Products Alert Notification Server Multiple Vulnerabilities - Advisories - Secunia
A Products Alert Notification Server Multiple Vulnerabilities
Secunia Advisory:
SA29665
Release Date:
2008-04-04
Critical:

Less critical
Impact:
DoS
System access
Where:
From local network
Solution Status:
Vendor Patch
Software:
BrightStor ARCserve Backup 11.x
BrightStor ARCserve Backup 11.x (for Microsoft SQL Server)
BrightStor ARCserve Backup 11.x (for Open Files)
BrightStor ARCserve Backup 11.x (for Oracle)
BrightStor ARCserve Backup 11.x (for Windows)
CA Anti-Virus for the Enterprise 8.x
CA Threat Manager 8.x
eTrust Antivirus 7.x
CVE reference:
CVE-2007-4620 (Secunia mirror)
Description:
Some vulnerabilities have been reported in various CA products, which can be exploited by malicious users to cause a DoS (Denial of Service) or to compromise a vulnerable system.
The vulnerabilities are caused due to boundary errors within multiple procedures in the CA Alert Notification Server service, which can be exploited to cause buffer overflows.
Successful exploitation allows execution of arbitrary code, but requires valid user credentials.
The vulnerabilities are reported in the following products:
* CA Anti-Virus for the Enterprise 7.1
* CA Threat Manager for the Enterprise (formerly eTrust Integrated Threat Management) r8
* CA Threat Manager for the Enterprise (formerly eTrust Integrated Threat Management) r8.1
* CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) r8
* CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) r8.1
* BrightStor ARCserve Backup r11.5
* BrightStor ARCserve Backup r11.1
* BrightStor ARCserve Backup r11 for Windows
Do you have this product installed on your home computer? Scan using the free Personal Software Inspector. Check if a vulnerable version is installed on computers in your corporate network, scan using the Network Software Inspector.
Solution:
Apply updates.
CA Anti-Virus for the Enterprise 7.1, CA Anti-Virus for the Enterprise r8:
Apply QO96079.
https://support.ca.com/irj/portal/ano...s?reqPage=search&searchID=QO96079
CA Threat Manager for the Enterprise r8:
Apply QO96387.
https://support.ca.com/irj/portal/ano...s?reqPage=search&searchID=QO96387
CA Anti-Virus for the Enterprise r8.1, CA Threat Manager for the Enterprise r8.1:
Apply QO96080.
https://support.ca.com/irj/portal/ano...s?reqPage=search&searchID=QO96080
BrightStor ARCserve Backup r11.5, BrightStor ARCserve Backup r11.1:
Apply QO96079.
https://support.ca.com/irj/portal/ano...s?reqPage=search&searchID=QO96079
BrightStor ARCserve Backup r11.0:
Upgrade to 11.1 and apply the latest patches.
Provided and/or discovered by:
The vendor credits an anonymous researcher working with iDefense VCP.
Original Advisory:
https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=173103
http://community.ca.com/blogs/casecur...-server-multiple-vulnerabilities.aspx