Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-0060
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-0060

Description:
Stack-based buffer overflow in the Message Queuing Server (Cam.exe) in CA (formerly Computer Associates) Message Queuing (CAM / CAFT) software before 1.11 Build 54_4 on Windows and NetWare, as used in CA Advantage Data Transport, eTrust Admin, certain BrightStor products, certain CleverPath products, and certain Unicenter products, allows remote attackers to execute arbitrary code via a crafted message to TCP port 3104.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/32234

ST
  1018449

SAID
  Secunia Advisory: SA26190

ISS
  http://www.iss.net/threats/272.html

CONFIRM
  http://www.ca.com/us/securityadvisor/newsinfo/collateral.aspx?cid=149809
  http://supportconnectw.ca.com/public/dto_transportit/infodocs/camsgquevul-secnot.asp

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/474602/100/0/threaded

BID
  25051


Return to the previous page.