First published: Wed Mar 02 2005(Updated: )
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execute arbitrary code via (1) certain long fields in the Checksum item in a GCR request, (2) a long IP address, hostname, or netmask values in a GCR request, (3) a long last parameter in a GETCONFIG packet, or (4) long values in a request with an invalid format.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom License Software | =0.1.0.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-0581 has a critical severity rating due to the potential for remote code execution.
To fix CVE-2005-0581, upgrade the Computer Associates License Client and Server to a version beyond 0.1.0.15.
CVE-2005-0581 specifically affects Computer Associates License Software version 0.1.0.15.
Yes, CVE-2005-0581 can be exploited remotely by sending specially crafted GCR requests.
Exploitation of CVE-2005-0581 could lead to arbitrary code execution, compromising the affected system.