CVE-2005-3653

Heap-based buffer overflow in the iGateway service for various Computer Associates (CA) iTechnology products, in iTechnology iGateway before 4.0.051230, allows remote attackers to execute arbitrary code via an HTTP request with a negative Content-Length field.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:broadcom:brightstor_arcserve_backup:9.01:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_arcserve_backup:11.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_arcserve_backup:11.5:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_arcserve_backup_laptops_desktops:11.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_arcserve_backup_laptops_desktops:11.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_portal:11.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_process_automation_manager:11.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_san_manager:11.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_san_manager:11.5:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_storage_resource_manager:6.3:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_storage_resource_manager:6.4:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_storage_resource_manager:11.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:brightstor_storage_resource_manager:11.5:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_admin:8.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_audit_aries:8.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_audit_irecorder:1.5:sp2:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_audit_irecorder:1.5:sp3:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_audit_irecorder:8.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_identity_minder:8.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_integrated_threat_management:8.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:itechnology_igateway:*:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:unicenter_asset_portfolio_management:11.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:unicenter_autosys_jm:11.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:unicenter_service_delivery:11.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:unicenter_service_desk:11.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:unicenter_service_desk_knowledge_tools:11.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:unicenter_service_fulfillment:2.2:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:unicenter_service_metric_analysis:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:brightstor_arcserve_backup:11:*:windows:*:*:*:*:*
cpe:2.3:a:ca:brightstor_enterprise_backup:10.0:*:solaris:*:*:*:*:*
cpe:2.3:a:ca:brightstor_enterprise_backup:10.5:*:solaris:*:*:*:*:*
cpe:2.3:a:ca:brightstor_enterprise_backup:10.5:*:tru64:*:*:*:*:*
cpe:2.3:a:ca:brightstor_enterprise_backup:10.5:*:windows_64-bit:*:*:*:*:*
cpe:2.3:a:ca:etrust_audit_aries:1.5:sp2:*:*:*:*:*:*
cpe:2.3:a:ca:etrust_audit_aries:1.5:sp3:*:*:*:*:*:*
cpe:2.3:a:ca:etrust_directory:8.1_web_components:*:*:*:*:*:*:*
cpe:2.3:a:ca:etrust_secure_content_manager:8.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_application_performance_monitor:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_application_server_managment:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_ca_web_services_distributed_management:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_exchange_management_console:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_management:3.5:*:websphere_mq:*:*:*:*:*
cpe:2.3:a:ca:unicenter_management:11.0:*:weblogic:*:*:*:*:*
cpe:2.3:a:ca:unicenter_management:11.0:*:websphere:*:*:*:*:*
cpe:2.3:a:ca:unicenter_service_catalog_fulfillment_accounting:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_service_fulfillment:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_service_level_management:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_web_server_management:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_web_services_distributed_management:11.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-12-31 05:00

Updated : 2024-02-04 16:52


NVD link : CVE-2005-3653

Mitre link : CVE-2005-3653

CVE.ORG link : CVE-2005-3653


JSON object : View

Products Affected

broadcom

  • brightstor_storage_resource_manager
  • etrust_audit_irecorder
  • unicenter_service_desk_knowledge_tools
  • brightstor_san_manager
  • unicenter_service_desk
  • brightstor_arcserve_backup
  • etrust_audit_aries
  • etrust_admin
  • unicenter_service_fulfillment
  • etrust_identity_minder
  • unicenter_service_metric_analysis
  • etrust_integrated_threat_management
  • brightstor_process_automation_manager
  • unicenter_autosys_jm
  • brightstor_portal
  • itechnology_igateway
  • unicenter_service_delivery
  • unicenter_asset_portfolio_management
  • brightstor_arcserve_backup_laptops_desktops

ca

  • unicenter_application_server_managment
  • etrust_directory
  • unicenter_service_fulfillment
  • unicenter_management
  • brightstor_enterprise_backup
  • unicenter_ca_web_services_distributed_management
  • etrust_audit_aries
  • unicenter_exchange_management_console
  • unicenter_web_services_distributed_management
  • unicenter_service_catalog_fulfillment_accounting
  • unicenter_web_server_management
  • etrust_secure_content_manager
  • brightstor_arcserve_backup
  • unicenter_application_performance_monitor
  • unicenter_service_level_management
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer