All the latest UK technology news, reviews and analysis

Exploit code surfaces for CA vulnerability

by Shaun Nichols

More from this author

02 Apr 2007

Be the first to comment

  • Tweet this
Hacker
Exploit code has been posted for a vulnerability in CA's Brightstor ARCserve Backup Media

Companies that use Computer Associates storage software are being warned to update their systems after exploit code surfaced for a recently-patched vulnerability. 

The US Computer Emergency Response Team (US-Cert) reported that exploit code has been posted for a vulnerability in the CA Brightstor ARCserve Backup Media application. The exploit targets the 'mediasvr' component in the software. 

SecurityFocus said that the vulnerability is known to exist in at least nine of CA's server security and backup applications. 

Users can mitigate the vulnerability by installing a vendor patch released in January, according to SecurityFocus.

US-Cert does not list a solution for the vulnerability and advises administrators to restrict the use of remote procedure call commands.

SecurityFocus said that a successful exploit could offer system-level access to the target machine with the ability to remotely execute code. If the exploit attempt fails, a denial of service crash could be triggered.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Systems Analysis Project Lead - Essex

Systems Analysis Project Lead - UML, Agile, Waterfall...

IT Business Analyst - ISEB, PRINCE2 - Southampton

IT Business Analyst - ISEB, PRINCE2 - Southampton, Hampshire...

Predictive modelling analytics - (SAS) - South Coast - £40K

Predictive Modelling analytics - (SAS) - South-East...

iOs Developer - JEE, cocoa, Objective-C - Midlands

iOs Developer - JEE, cocoa, Objective-C - Midlands (potential...

To send to more than one email address, simply separate each address with a comma.