CVE-2006-5172: Buffer Overflow
Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the "Mediasvr.exe String Handling Overflow," a different vulnerability than CVE-2006-5171.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-5172?
CVE-2006-5172 is considered to have a high severity due to the potential for remote code execution.
How do I fix CVE-2006-5172?
To fix CVE-2006-5172, update to a patched version of CA Brightstor ARCserve Backup or CA Protection Suites that addresses this vulnerability.
What systems are affected by CVE-2006-5172?
CVE-2006-5172 affects CA Brightstor ARCserve Backup versions 9.01 to 11.5, CA Protection Suites r2, and Broadcom BrightStor Enterprise Backup 10.5.
What type of attack does CVE-2006-5172 enable?
CVE-2006-5172 enables remote attackers to execute arbitrary code on affected systems through crafted SUNRPC packets.
When was CVE-2006-5172 disclosed?
CVE-2006-5172 was disclosed in September 2006.