vendor:
BrightStor Backup
by:
M. Shirk
N/A
CVSS
N/A
Denial of Service
Unknown
CWE
Product Name: BrightStor Backup
Affected Version From: BrightStor ARCserve Backup 11.5.2.0 (SP2)
Affected Version To: BrightStor ARCserve Backup 11.5.2.0 (SP2)
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP2
2007
Computer Associates (CA) Brightstor Backup caloggderd.exe DoS (camt70.dll)
There is an issue in camt70.dll when caloggerd is processing a hostname for a login operation. When processing the string, if a null is passed in as an argument, it will be loaded into ESI and then loaded into EDI in which the string processing will read a null memory location.
Mitigation:
Unknown