Computer Associates XOsoft Multiple Remote Buffer Overflow Vulnerabilities
BID:39238
Info
Computer Associates XOsoft Multiple Remote Buffer Overflow Vulnerabilities
| Bugtraq ID: | 39238 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2010-1223 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 06 2010 12:00AM |
| Updated: | May 25 2010 04:22PM |
| Credit: | Kotas, Kevin J |
| Vulnerable: |
Computer Associates XOsoft Replication r12.5 Computer Associates XOsoft Replication r12 Computer Associates XOsoft High Availability r12.5 Computer Associates XOsoft High Availability r12 Computer Associates XOsoft Content Distribution r12.5 Computer Associates XOsoft Content Distribution r12 |
| Not Vulnerable: |
Computer Associates XOsoft Replication r4 Computer Associates XOsoft High Availability r4 Computer Associates XOsoft Content Distribution r4 |
Discussion
Computer Associates XOsoft Multiple Remote Buffer Overflow Vulnerabilities
Computer Associates XOsoft is prone to multiple buffer-overflow vulnerabilities because the application fails to perform adequate boundary-checks on user-supplied data.
An attacker can exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
Computer Associates XOsoft is prone to multiple buffer-overflow vulnerabilities because the application fails to perform adequate boundary-checks on user-supplied data.
An attacker can exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
Exploit / POC
Computer Associates XOsoft Multiple Remote Buffer Overflow Vulnerabilities
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Computer Associates XOsoft Multiple Remote Buffer Overflow Vulnerabilities
Solution:
Updates are available to address these issues. Please see the references for more information.
Computer Associates XOsoft Content Distribution r12
Computer Associates XOsoft High Availability r12.5
Computer Associates XOsoft Replication r12
Computer Associates XOsoft High Availability r12
Computer Associates XOsoft Content Distribution r12.5
Computer Associates XOsoft Replication r12.5
Solution:
Updates are available to address these issues. Please see the references for more information.
Computer Associates XOsoft Content Distribution r12
-
Computer Associates RO16643
https://support.ca.com/irj/portal/anonymous/redirArticles?reqPage=sear ch&searchID=RO16643
Computer Associates XOsoft High Availability r12.5
-
Computer Associates RO15016
https://support.ca.com/irj/portal/anonymous/redirArticles?reqPage=sear ch&searchID=RO15016
Computer Associates XOsoft Replication r12
-
Computer Associates RO16643
https://support.ca.com/irj/portal/anonymous/redirArticles?reqPage=sear ch&searchID=RO16643
Computer Associates XOsoft High Availability r12
-
Computer Associates RO16643
https://support.ca.com/irj/portal/anonymous/redirArticles?reqPage=sear ch&searchID=RO16643
Computer Associates XOsoft Content Distribution r12.5
-
Computer Associates RO15016
https://support.ca.com/irj/portal/anonymous/redirArticles?reqPage=sear ch&searchID=RO15016
Computer Associates XOsoft Replication r12.5
-
Computer Associates RO15016
https://support.ca.com/irj/portal/anonymous/redirArticles?reqPage=sear ch&searchID=RO15016
References
Computer Associates XOsoft Multiple Remote Buffer Overflow Vulnerabilities
References:
References:
- CA20100406-01: Security Notice for CA XOsoft (Computer Associates)
- Computer Associates Homepage (Computer Associates)
- ZDI-10-065: CA XOsoft xosoapapi.asmx Multiple Remote Code Execution Vulnerabilit (Computer Associates)
- ZDI-10-066: CA XOsoft Control Service entry_point.aspx Remote Code Execution Vul (Zero Day Initiative)