APP: Computer Associates BrightStor Unicenter Agent Overflow

This signature detects attempts to exploit a known vulnerability against the BrightStor Unicenter Agent. Attackers, knowing the login credentials for the affected file system, can gain unauthorized access and possibly execute arbitrary code with root permissions.

Extended Description

Several Computer Associates Unicenter TNG utilities have been reported to be prone to multiple remote buffer overflow vulnerabilities. These vulnerabilities likely exist due to a lack of sufficient boundary checks performed on user-supplied data. It has been reported that these issues are exploitable remotely without prior authentication to potentially have arbitrary code executed with SYSTEM privileges on a vulnerable host.

Affected Products

Computer_associates unicenter_tng

Short Name
APP:CA:ARCSRV:UNICENTERAGENT-OF
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
Agent Associates BrightStor CVE-2004-1812 CVE-2005-0260 Computer Overflow Unicenter bid:12491 bid:9863
Release Date
06/15/2005
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
UDP/41524
False Positive
Unknown
Vendors

Computer_associates

CVSS Score

10.0

Found a potential security threat?