Computer Associates BrightStor Hierarchical Storage Manager CsAgent Multiple Remote Vulnerabilities

A proof-of-concept (ca-brightstor-hsm_dos.pl) exploit has been released for one of the opcode-handling buffer-overflow vulnerabilities. The proof of concept may trigger a denial of service.

DSquare Security has developed a working commercial exploit for its D2 Exploitation Pack product. This exploit is not otherwise publicly available or known to be circulating in the wild.

A Metasploit exploit module (25823.rb) targeting one of the buffer-overflow issues on the Windows platform is publicly available.


 

Privacy Statement
Copyright 2010, SecurityFocus