* ____________________________________________________________________________ * * ID: 47 * PRODUCT: AXWBAS * RELEASE: 11.1 * DESC: NT -UNIVERSAL AGENT SECURITY UPDATE - 64 BIT * SYSTEMS AFFECTED: NT * SOLUTION TEXT: PRODUCT: BAB Windows Common RELEASE: 11.1 APAR #: QO66534 DATE: 8 APR 2005 PROBLEM DESCRIPTION: NT -UNIVERSAL AGENT SECURITY UPDATE - 64 BIT ---------------------------------------------------- A security vulnerability has been found in the BrightStor ARCserve Backup Universal Agent Service for Windows and BrightStor Enterprise Backup Universal Agent Service for Windows. This buffer overflow vulnerability was reported to Computer Associates by iDEFENSE. CA strongly recommends this security update be applied immediately to all systems that have any of the products listed below. BrightStor ARCserve Backup r11.1: -BrightStor ARCserve Backup r11.1 Client Agent for Windows -BrightStor ARCserve Backup r11.1 for Windows Agent for Oracle -BrightStor ARCserve Backup r11.1 for Windows Agent for Microsoft Exchange Premium Add-on -BrightStor ARCserve Backup r11.1 for Windows Enterprise Option for SAP R/3 for Oracle -BrightStor ARCserve Backup r11.1 for Windows NDMP NAS Option PREREQS: SP1 MPREREQS: None COREQS: None MCOREQS: None SUPERSEDED: None HYPER: YES DISTRIBUTION CODE: A (A=Available, I=Internal) PROBLEM RESOLUTION: Follow the instructions below: The following PREREQS must be applied before applying this fix: SP1 This fix requires BrightStor ARCserve Backup Release 11.1 to be installed. 1. Unzip the fix file as follows: CAZIPXP -U QO66534.CAZ 2. Run BAB64Security.exe PRODUCT(S) AFFECTED: BrightStor ARCserve Backup for Windows Release 11.1 DOWNLOAD INFORMATION: --------------------- NODE: ftp.ca.com PATH: /CAproducts/unicenter/AXWBAS/nt/GA/QO66534 FILES: QO66534.DFC QO66534.CAZ UPDATED ROUTINES: --------------- BAB64Security.exe 8631575 TUE MAR 29 18:27:20 2005 * ____________________________________________________________________________ * * NT VERSION: 0 EFFECTIVE: 04/08/2005 ACTION: A *** NO ZAPS FOR THIS VERSION ***