安全研究
安全漏洞
Computer Associates ARCserve Backup for Laptops and Desktops多个远程漏洞
发布日期:2008-04-04
更新日期:2008-09-03
受影响系统:Computer Associates Desktop Management Suite 11.2
Computer Associates Desktop Management Suite 11.1
Computer Associates ARCserve Backup for Laptops and Desktops 11.5
Computer Associates ARCserve Backup for Laptops and Desktops 11.1 SP2
Computer Associates ARCserve Backup for Laptops and Desktops 11.1 SP1
Computer Associates ARCserve Backup for Laptops and Desktops 11.1
Computer Associates ARCserve Backup for Laptops and Desktops 11.0
描述:
BUGTRAQ ID:
28616
CVE(CAN) ID:
CVE-2008-1329,
CVE-2008-1328
CA ARCserve D2D是CA Technologies开发的基于磁盘的备份解决方案,可保护和恢复物理和虚拟服务器上的数据。
CA ARCserve Backup for Laptops and Desktops r11.0-r11.5、Suite 11.1、11.2的NetBackup服务存在多个远程缓冲区溢出和拒绝服务漏洞,成功利用后可允许远程攻击者以系统级别的权限执行任意机器代码。
<*来源:Dyon Balding
链接:
http://xforce.iss.net/xforce/xfdb/41642
*>
建议:
厂商补丁:
Computer Associates
-------------------
目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载:
http://www.cai.com/
https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=173105浏览次数:1766
严重程度:0(网友投票)
本安全漏洞由绿盟科技翻译整理,版权所有,未经许可,不得转载 绿盟科技给您安全的保障 |