Lucene search

K
cveMitreCVE-2006-5171
HistoryJan 16, 2007 - 8:28 p.m.

CVE-2006-5171

2007-01-1620:28:00
mitre
web.nvd.nist.gov
25
2
cve-2006-5171
buffer overflow
rpc interface
mediasvr.exe
ca brightstor arcserve backup

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.231

Percentile

96.6%

Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the “Mediasvr.exe Overflow,” a different vulnerability than CVE-2006-5172.

Affected configurations

Nvd
Node
broadcombrightstor_arcserve_backupRange11.5
OR
broadcombrightstor_arcserve_backupMatch9.01
OR
broadcombrightstor_enterprise_backupMatch10.5
OR
caprotection_suitesMatchr2
VendorProductVersionCPE
broadcombrightstor_arcserve_backup*cpe:2.3:a:broadcom:brightstor_arcserve_backup:*:*:*:*:*:*:*:*
broadcombrightstor_arcserve_backup9.01cpe:2.3:a:broadcom:brightstor_arcserve_backup:9.01:*:*:*:*:*:*:*
broadcombrightstor_enterprise_backup10.5cpe:2.3:a:broadcom:brightstor_enterprise_backup:10.5:*:*:*:*:*:*:*
caprotection_suitesr2cpe:2.3:a:ca:protection_suites:r2:*:*:*:*:*:*:*

Social References

More

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.231

Percentile

96.6%