CA.Unicenter.Software.Delivery.Stack.Overflow

description-logoDescription

This indicates an attack attempt against a buffer overflow vulnerability in a token searching function in the dtscore library in Data Transport Services of CA Software Delivery.
The vulnerability is caused by an error when the vulnerable software handles a specially crafted packet. It allows a remote attacker to execute arbitrary code.

affected-products-logoAffected Products

CA Software Delivery r11.2 C1
CA Software Delivery r11.2 C2
CA Software Delivery r11.2 C3
CA Software Delivery r11.2 SP4
CA Unicenter Software Delivery 4.0 C3

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply patch, available from the web site:

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2021-01-11 16.995