Heap-based buffer overflow in SW3eng.exe in the eID Engine service in CA (formerly Computer Associates) eTrust Intrusion Detection 3.0.5.57 and earlier allows remote attackers to cause a denial of service (application crash) via a long key length value to the remote administration port (9191/tcp).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Etrust_intrusion_detection | Broadcom | 3.0 (including) | 3.0 (including) |
Etrust_intrusion_detection | Ca | 2.0-sp1 (including) | 2.0-sp1 (including) |
Etrust_intrusion_detection | Ca | 3.0-sp1 (including) | 3.0-sp1 (including) |