First published: Fri Mar 16 2007(Updated: )
The Tape Engine in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC procedure arguments, which result in memory corruption, a different vulnerability than CVE-2006-6076.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom ARCserve Backup | <=11.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1447 has been classified as a critical vulnerability due to its potential to cause denial of service and execute arbitrary code.
To remediate CVE-2007-1447, upgrade BrightStor ARCserve Backup to version 11.6 or later where this vulnerability has been addressed.
Exploitation of CVE-2007-1447 can lead to system crashes and in some instances allow attackers to execute malicious code.
CVE-2007-1447 affects BrightStor ARCserve Backup version 11.5 and earlier.
Yes, CVE-2007-1447 can be exploited remotely by attackers leveraging vulnerable RPC procedure arguments.