First published: Thu Feb 10 2011(Updated: )
The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted request to port 1882, involving an incorrect integer calculation and a heap-based buffer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Secure Content Manager | =8.0 | |
Symantec Gateway Security | =8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0758 is classified as a high severity vulnerability due to its potential for denial of service and arbitrary code execution.
To fix CVE-2011-0758, update to CA ETrust Secure Content Manager 8.1 or later and ensure patches are applied.
CVE-2011-0758 affects CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1.
Attackers can exploit CVE-2011-0758 to crash the service and possibly execute arbitrary code by sending crafted requests.
A recommended workaround for CVE-2011-0758 is to limit access to port 1882 and implement network-level restrictions.