Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execute arbitrary code via (1) certain long fields in the Checksum item in a GCR request, (2) a long IP address, hostname, or netmask values in a GCR request, (3) a long last parameter in a GETCONFIG packet, or (4) long values in a request with an invalid format.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=110979326828704&w=2 | mailing list |
http://www.idefense.com/application/poi/display?id=210&type=vulnerabilities | third party advisory patch vendor advisory |
http://www.idefense.com/application/poi/display?id=215&type=vulnerabilities | third party advisory patch vendor advisory |
http://www.idefense.com/application/poi/display?id=213&type=vulnerabilities | third party advisory patch vendor advisory |
http://supportconnectw.ca.com/public/ca_common_docs/security_notice.asp | patch vendor advisory |
http://www.idefense.com/application/poi/display?id=214&type=vulnerabilities | third party advisory patch vendor advisory |