OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: BrightStor ARCserve Backup buffer overflow PoC (fix available)

From: Williams, James K (James.Williamsca.com)
Date: Wed Feb 16 2005 - 18:36:06 CST


> Subject: BrightStor ARCserve Backup buffer overflow PoC
> From: <cybertronic () gmx ! net>
> Date: 2005-02-11 18:19:23
> Message-ID: <20050211181923.27031.qmail () www ! securityfocus ! com>
>
> //cybertronicgmx.net
>
> #include <stdio.h>
> [...snip...]

FYI - we have posted a fix for r11.1 Windows:
 
http://supportconnect.ca.com/sc/solcenter/solresults.jsp?aparno=QO64496&
startsearch=1

Please note the SP1 prerequisite.

Patches for additional versions and platforms will be posted shortly.

Regards,
Ken Williams
                                                         
Ken Williams, Director, Research ; 0xE2941985
Computer Associates ; james.williamsca.com
A9F9 44A6 B421 FF7D 4000 E6A9 7925 91DF E294 1985