Stack-based buffer overflow in the Message Queuing Server (Cam.exe) in CA (formerly Computer Associates) Message Queuing (CAM / CAFT) software before 1.11 Build 54_4 on Windows and NetWare, as used in CA Advantage Data Transport, eTrust Admin, certain BrightStor products, certain CleverPath products, and certain Unicenter products, allows remote attackers to execute arbitrary code via a crafted message to TCP port 3104.
References
Link | Resource |
---|---|
http://www.iss.net/threats/272.html | Broken Link |
http://supportconnectw.ca.com/public/dto_transportit/infodocs/camsgquevul-secnot.asp | Vendor Advisory |
http://www.securityfocus.com/bid/25051 | Third Party Advisory VDB Entry |
http://secunia.com/advisories/26190 | Third Party Advisory |
http://www.ca.com/us/securityadvisor/newsinfo/collateral.aspx?cid=149809 | Vendor Advisory |
http://www.securitytracker.com/id?1018449 | Third Party Advisory VDB Entry |
http://www.vupen.com/english/advisories/2007/2638 | Third Party Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/32234 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/archive/1/474602/100/0/threaded |
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-07-25 17:30
Updated : 2021-04-14 08:46
NVD link : CVE-2007-0060
Mitre link : CVE-2007-0060
JSON object : View
CWE
Products Affected
broadcom
- etrust_admin
- brightstor_san_manager
- cleverpath_predictive_analysis_server
- unicenter_tng
- unicenter_data_transport_option
- unicenter_nsm_wireless_network_management_option
- brightstor_portal
- cleverpath_aion
- cleverpath_ecm
- unicenter_remote_control
- advantage_data_transport
- unicenter_jasmine
- unicenter_asset_management
- unicenter_network_and_systems_management
- unicenter_software_delivery
- cleverpath_olap
- unicenter_service_level_management
- unicenter_application_performance_monitor
ca
- unicenter_tng
- etrust_admin
- unicenter_software_delivery
- unicenter_asset_management
- unicenter_management
- unicenter_enterprise_job_manager