Vulnerability Description
The DM Primer (dmprimer.exe) in the DM Deployment Common Component in Computer Associates (CA) BrightStor Mobile Backup r4.0, BrightStor ARCserve Backup for Laptops & Desktops r11.0, r11.1, r11.1 SP1, Unicenter Remote Control 6.0, 6.0 SP1, CA Desktop Protection Suite r2, CA Server Protection Suite r2, and CA Business Protection Suite r2 allows remote attackers to cause a denial of service (CPU consumption or application hang) via a large network packet, which causes a WSAEMESGSIZE error code that is not handled, leading to a thread exit.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Broadcom | Brightstor Arcserve Backup Laptops Desktops | 11.0 |
| Broadcom | Brightstor Mobile Backup | r4.0 |
| Broadcom | Business Protection Suite | 2.0 |
| Broadcom | Desktop Protection Suite | 2.0 |
| Broadcom | Server Protection Suite | 2 |
| Broadcom | Unicenter Remote Control | 5.2 |
| Ca | Unicenter Remote Control | 6.0 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/18531Vendor Advisory
- http://securitytracker.com/id?1015504
- http://supportconnectw.ca.com/public/ca_common_docs/dmdeploysecurity_notice.aspVendor Advisory
- http://www.designfolks.com.au/karma/DMPrimer/Vendor AdvisoryURL Repurposed
- http://www.osvdb.org/22529
- http://www.securityfocus.com/archive/1/422381/100/0/threaded
- http://www.securityfocus.com/bid/16276Exploit
- http://www.vupen.com/english/advisories/2006/0236Vendor Advisory
- http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=33756Vendor Advisory
- http://secunia.com/advisories/18531Vendor Advisory
- http://securitytracker.com/id?1015504
- http://supportconnectw.ca.com/public/ca_common_docs/dmdeploysecurity_notice.aspVendor Advisory
- http://www.designfolks.com.au/karma/DMPrimer/Vendor AdvisoryURL Repurposed
- http://www.osvdb.org/22529
- http://www.securityfocus.com/archive/1/422381/100/0/threaded
FAQ
What is CVE-2006-0306?
CVE-2006-0306 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The DM Primer (dmprimer.exe) in the DM Deployment Common Component in Computer Associates (CA) BrightStor Mobile Backup r4.0, BrightStor ARCserve Backup for Laptops & Desktops r11.0, r11.1, r11.1 SP1,...
How severe is CVE-2006-0306?
CVE-2006-0306 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-0306?
Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Brightstor Arcserve Backup Laptops Desktops, Broadcom Brightstor Mobile Backup, Broadcom Business Protection Suite, Broadcom Desktop Protection Suite, Broadcom Server Protection Suite.