Computer Security
[EN] securityvulns.ru no-pyccku


CA ETrust Secure Content Manager integer overflow
Published:14.02.2011
Source:
SecurityVulns ID:11430
Type:remote
Threat Level:
6/10
Description:Integer overflow in TCP/1882 service is not fixed in > 180 days.
CVE:CVE-2011-0758 (The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted request to port 1882, involving an incorrect integer calculation and a heap-based buffer overflow.)
Original documentdocumentZDI, ZDI-11-059: CA ETrust Secure Content Manager Common Services Transport Remote Code Execution Vulnerability (14.02.2011)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod