The cadbd RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to (1) execute arbitrary code via stack-based buffer overflows in unspecified RPC procedures, and (2) trigger memory corruption related to the use of "handle" RPC arguments as pointers.
| Software | From | Fixed in |
|---|---|---|
| broadcom / brightstor_arcserve_backup | 10.5 | 10.5.x |
| broadcom / brightstor_arcserve_backup | 11.5 | 11.5.x |
| broadcom / brightstor_arcserve_backup | 11 | 11.x |
| broadcom / brightstor_arcserve_backup | 11.1 | 11.1.x |
| broadcom / brightstor_arcserve_backup | 9.01 | 9.01.x |
| broadcom / brightstor_enterprise_backup | 10.5 | 10.5.x |