多个基于堆栈缓冲区溢出在阳光下RPC服务CA(以前计算机协会)BrightStor ARCserve媒体服务器,如用于BrightStor ARCserve备份9.01到11.5 SP2, BrightStor企业10.5备份,服务器保护套件2,和商业保护套件2,允许远程攻击者通过畸形RPC字符串执行任意代码,不同的漏洞比cve - 2006 - 5171, cve - 2006 - 5172, cve - 2007 - 1785。
http://secunia.com/advisories/24972
http://securityreason.com/securityalert/2628
http://supportconnectw.ca.com/public/storage/infodocs/babmedser-secnotice.asp
http://www.kb.cert.org/vuls/id/979825
http://www.securityfocus.com/archive/1/466790/100/0/threaded
http://www.securityfocus.com/bid/23635
http://www.securitytracker.com/id?1017952
http://www.vupen.com/english/advisories/2007/1529
http://www.zerodayinitiative.com/advisories/zdi - 07 - 022. - html