<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.ca.com/~d/styles/rss2full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.ca.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" version="2.0"><channel><title>CA Security Response Blog</title><link>http://community.ca.com/blogs/casecurityresponseblog/default.aspx</link><description /><dc:language>en</dc:language><generator>CommunityServer 2007.1 (Build: 20917.1142)</generator><image><link>http://www.ca.com</link><url>http://www.ca.com/images/icons/logo.gif</url><title>CA</title></image><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.ca.com/CaSecurityResponseBlog" type="application/rss+xml" /><item><title>CA ARCserve Backup Discovery Service Denial of Service Vulnerability</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/06/18/ca-arcserve-backup-discovery-service-denial-of-service-vulnerability.aspx</link><pubDate>Wed, 18 Jun 2008 14:16:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1287</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/06/18/ca-arcserve-backup-discovery-service-denial-of-service-vulnerability.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/BrightStor/default.aspx">BrightStor</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Vulnerability/default.aspx">Vulnerability</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ARCserve+Backup/default.aspx">ARCserve Backup</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2008-1979/default.aspx">CVE-2008-1979</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Discovery+Service/default.aspx">Discovery Service</category><description>On June 17th, 2008, CA published a security notice to address a vulnerability in CA ARCserve Backup.
&amp;nbsp;
Title: CA ARCserve Backup Discovery Service Denial of Service Vulnerability

CA Advisory Date: 2008-06-17

Reported By: Luigi Auriemma

Impact: A remote attacker can cause a denial of service.

Summary: CA ARCserve Backup contains a vulnerability in the Discovery service (casdscsvc) that...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/314675679" height="1" width="1"/&gt;</description></item><item><title>CA Secure Content Manager HTTP Gateway Service FTP Request Vulnerabilities</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/06/04/ca-secure-content-manager-http-gateway-service-ftp-request-vulnerabilities.aspx</link><pubDate>Wed, 04 Jun 2008 20:28:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1260</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/06/04/ca-secure-content-manager-http-gateway-service-ftp-request-vulnerabilities.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Vulnerability/default.aspx">Vulnerability</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Buffer+Overflow/default.aspx">Buffer Overflow</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Secure+Content+Manager/default.aspx">Secure Content Manager</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/exploit/default.aspx">exploit</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/patch/default.aspx">patch</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2008-2541/default.aspx">CVE-2008-2541</category><description>On June 3rd, 2008, CA published a security notice to address multiple vulnerabilities in CA Secure Content Manager.
Title: CA Secure Content Manager HTTP Gateway Service FTP Request Vulnerabilities

CA Advisory Date: 2008-06-03

Reported By: Sebastian Apelt working with ZDI/TippingPoint; Cody Pierce, TippingPoint DVLabs

Impact: A remote attacker can cause a denial of service or execute arbitrary...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/304820692" height="1" width="1"/&gt;</description></item><item><title>CA ARCserve Backup caloggerd and xdr Functions Vulnerabilities</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/05/19/ca-arcserve-backup-caloggerd-and-xdr-functions-vulnerabilities.aspx</link><pubDate>Mon, 19 May 2008 21:06:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1236</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/05/19/ca-arcserve-backup-caloggerd-and-xdr-functions-vulnerabilities.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/BrightStor/default.aspx">BrightStor</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Buffer+Overflow/default.aspx">Buffer Overflow</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ARCserve+Backup/default.aspx">ARCserve Backup</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/exploit/default.aspx">exploit</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2008-2241/default.aspx">CVE-2008-2241</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2008-2242/default.aspx">CVE-2008-2242</category><description>On May 19th, 2008 CA published a security notice to address multiple vulnerabilities in CA ARCserve Backup.

&amp;nbsp;

Title: CA ARCserve Backup caloggerd and xdr Functions Vulnerabilities


CA Advisory Date: 2008-05-19


Reported By: 

An anonymous researcher working with the iDefense VCP
Damian Put working with ZDI/TippingPoint


Impact: A remote attacker can cause a denial of service or execute...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/293777739" height="1" width="1"/&gt;</description></item><item><title>Automatic Patch-Based Exploit Generation</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/24/automatic-patch-based-exploit-generation.aspx</link><pubDate>Thu, 24 Apr 2008 20:27:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1143</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/24/automatic-patch-based-exploit-generation.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/exploit/default.aspx">exploit</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/patch/default.aspx">patch</category><description>The Full-Disclosure mailing list is good for interesting, and often humorous, content on a daily basis.&amp;nbsp; The highlight of the week last week was a link to a paper entitled &amp;quot;Automatic Patch-Based Exploit Generation&amp;quot;, by David Brumley, Pongsin Poosankam, Dawn Song, and Jiang Zheng.&amp;nbsp; From the abstract ... &amp;quot;In this paper, we propose techniques for automatic patch-based...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/277303569" height="1" width="1"/&gt;</description></item><item><title>CA ARCserve Backup r12 and CA Secure Content Manager r8 vulnerabilities</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/21/ca-arcserve-backup-r12-and-ca-secure-content-manager-r8-vulnerabilities.aspx</link><pubDate>Mon, 21 Apr 2008 23:10:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1134</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/21/ca-arcserve-backup-r12-and-ca-secure-content-manager-r8-vulnerabilities.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Vulnerability/default.aspx">Vulnerability</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Secure+Content+Manager/default.aspx">Secure Content Manager</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ARCserve+Backup/default.aspx">ARCserve Backup</category><description>CA is currently investigating vulnerability reports concerning CA ARCserve Backup r12 and CA Secure Content Manager r8 that were published publicly on 4/17/08 and 4/18/08 respectively. CA will issue an advisory if and when the reports have been verified.&amp;nbsp;
Share this post: Email it! | bookmark it! | digg it! | reddit!&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/275026834" height="1" width="1"/&gt;</description></item><item><title>CA DSM gui_cm_ctrls ActiveX Control Vulnerability</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/16/ca-dsm-gui-cm-ctrls-activex-control-vulnerability.aspx</link><pubDate>Wed, 16 Apr 2008 15:34:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1118</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/16/ca-dsm-gui-cm-ctrls-activex-control-vulnerability.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ActiveX/default.aspx">ActiveX</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Unicenter/default.aspx">Unicenter</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Vulnerability/default.aspx">Vulnerability</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2008-1786/default.aspx">CVE-2008-1786</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/gui_5F00_cm_5F00_ctrls/default.aspx">gui_cm_ctrls</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/eEye/default.aspx">eEye</category><description>On April 15th, 2008 CA published a security notice to address a vulnerability in CA products that implement the DSM gui_cm_ctrls ActiveX control.

&amp;nbsp;
Title: CA DSM gui_cm_ctrls ActiveX Control Vulnerability
&amp;nbsp;
CA Advisory Date: 2008-04-15
&amp;nbsp;
Reported By: Greg Linares of eEye Digital Security
&amp;nbsp;
Impact: A remote attacker can execute arbitrary code or cause a denial of service...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/271513713" height="1" width="1"/&gt;</description></item><item><title>CA ARCserve Backup for Laptops and Desktops Server and CA Desktop Management Suite Multiple Vulnerabilities</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/04/ca-arcserve-backup-for-laptops-and-desktops-server-and-ca-desktop-management-suite-multiple-vulnerabilities.aspx</link><pubDate>Fri, 04 Apr 2008 12:47:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1091</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/04/ca-arcserve-backup-for-laptops-and-desktops-server-and-ca-desktop-management-suite-multiple-vulnerabilities.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2008-1328/default.aspx">CVE-2008-1328</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Desktop+Management+Suite/default.aspx">Desktop Management Suite</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2008-1329/default.aspx">CVE-2008-1329</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ARCserve+Backup+for+Laptops+and+Desktops/default.aspx">ARCserve Backup for Laptops and Desktops</category><description>On April 3rd, 2008, CA published a security notice to address multiple vulnerabilities in CA ARCserve Backup for Laptops and Desktops Server and CA Desktop Management Suite.
&amp;nbsp;
Title: CA ARCserve Backup for Laptops and Desktops Server and CA Desktop Management Suite Multiple Vulnerabilities

CA Advisory Date: 2008-04-03

Reported By: Dyon Balding of Secunia Research

Impact: A remote attacker...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/263981595" height="1" width="1"/&gt;</description></item><item><title>CA Alert Notification Server Multiple Vulnerabilities</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/04/ca-alert-notification-server-multiple-vulnerabilities.aspx</link><pubDate>Fri, 04 Apr 2008 11:55:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1089</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/04/04/ca-alert-notification-server-multiple-vulnerabilities.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2007-4620/default.aspx">CVE-2007-4620</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Alert+Notification+Server/default.aspx">Alert Notification Server</category><description>On April 3rd, 2008 CA published a security notice to address a vulnerability in CA Alert Notification Server.
&amp;nbsp;
Title: CA Alert Notification Server Multiple Vulnerabilities

CA Advisory Date: 2008-04-03

Reported By: An anonymous researcher working with the iDefense VCP

Impact: A remote authenticated attacker can execute arbitrary code or cause a denial of service condition.

Summary: CA...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/263951277" height="1" width="1"/&gt;</description></item><item><title>CA Multiple Products DSM ListCtrl ActiveX Control Buffer Overflow Vulnerability</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/03/28/ca-multiple-products-dsm-listctrl-activex-control-buffer-overflow-vulnerability.aspx</link><pubDate>Fri, 28 Mar 2008 12:39:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1073</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/03/28/ca-multiple-products-dsm-listctrl-activex-control-buffer-overflow-vulnerability.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ActiveX/default.aspx">ActiveX</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ListCtrl/default.aspx">ListCtrl</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/DSM/default.aspx">DSM</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Unicenter/default.aspx">Unicenter</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Vulnerability/default.aspx">Vulnerability</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/BrightStorrightStor/default.aspx">BrightStorrightStor</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2008-1472/default.aspx">CVE-2008-1472</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Buffer+Overflow/default.aspx">Buffer Overflow</category><description>On March 28th, 2008 CA published a security notice to address a vulnerability in CA products that implement the DSM ListCtrl ActiveX control.
&amp;nbsp;
Title: CA Multiple Products DSM ListCtrl ActiveX Control Buffer Overflow Vulnerability

CVE: CVE-2008-1472

CA Advisory Date: 2008-03-28

Reported By: Exploit code posted at milw0rm.com

Impact: A remote attacker can cause a denial of service or...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/259642891" height="1" width="1"/&gt;</description></item><item><title>Note about recently publicized CA BrightStor ActiveX exploit code</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/03/20/note-about-recently-publicized-ca-brightstor-activex-exploit-code.aspx</link><pubDate>Thu, 20 Mar 2008 14:12:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1054</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/03/20/note-about-recently-publicized-ca-brightstor-activex-exploit-code.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Milw0rm/default.aspx">Milw0rm</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ActiveX/default.aspx">ActiveX</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/BrightStor/default.aspx">BrightStor</category><description>CA is reviewing exploit code that was posted on 2008-03-16 to the Milw0rm exploit archive web site.&amp;nbsp; This exploit code is potentially associated with vulnerabilities that may exist in CA BrightStor ARCserve Backup for Laptops and Desktops and/or related products.&amp;nbsp; CA will issue an advisory after we have completed our initial investigation.
Share this post: Email it! | bookmark it! |...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/254985069" height="1" width="1"/&gt;</description></item><item><title>Russian Business Network (RBN) - an example of modern cybercrime</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/03/03/russian-business-network-rbn-an-example-of-modern-cybercrime.aspx</link><pubDate>Mon, 03 Mar 2008 14:43:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:1021</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2008/03/03/russian-business-network-rbn-an-example-of-modern-cybercrime.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/cybercrime/default.aspx">cybercrime</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/RBN/default.aspx">RBN</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Russian+Business+Network/default.aspx">Russian Business Network</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Shadowserver/default.aspx">Shadowserver</category><description>When warning customers, friends, and family about the dangers cybercrime, they usually accuse me of exaggerating the severity of internet related criminal activity.&amp;nbsp; They think I&amp;#39;m sensationalizing an &amp;quot;epidemic&amp;quot; that, in reality, isn&amp;#39;t very organized or pervasive.&amp;nbsp; The truth though is that cybercrime is very mature, very businesslike, and more of a threat than ever...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/244955459" height="1" width="1"/&gt;</description></item><item><title>CA Products That Embed Ingres Authentication Vulnerability</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2007/12/19/ca-products-that-embed-ingres-authentication-vulnerability.aspx</link><pubDate>Wed, 19 Dec 2007 18:25:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:760</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2007/12/19/ca-products-that-embed-ingres-authentication-vulnerability.aspx#comments</comments><description>On 2007-12-19, we released patches to address a vulnerability in CA products that embed Ingres 2.5 or 2.6 on Windows platforms.

Title: [CAID 35970]: CA Products That Embed Ingres Authentication Vulnerability

CA Vuln ID (CAID): 35970

CA Advisory Date: 2007-12-19

Reported By: Ingres Corporation

Impact: Attacker can gain elevated privileges.

Summary: A potential vulnerability exists in the...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/204257062" height="1" width="1"/&gt;</description></item><item><title>New patches available to address CA BrightStor ARCserve Backup multiple vulnerabilities</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2007/12/05/new-patches-available-to-address-ca-brightstor-arcserve-backup-multiple-vulnerabilities.aspx</link><pubDate>Wed, 05 Dec 2007 14:40:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:726</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2007/12/05/new-patches-available-to-address-ca-brightstor-arcserve-backup-multiple-vulnerabilities.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2007-5332/default.aspx">CVE-2007-5332</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2007-5331/default.aspx">CVE-2007-5331</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/QO92848/default.aspx">QO92848</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2007-5326/default.aspx">CVE-2007-5326</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2007-5330/default.aspx">CVE-2007-5330</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2007-5328/default.aspx">CVE-2007-5328</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/35726/default.aspx">35726</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/and+CVE-2007-5327/default.aspx">and CVE-2007-5327</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/35725/default.aspx">35725</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/35724/default.aspx">35724</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/QO92996/default.aspx">QO92996</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/QO92849/default.aspx">QO92849</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2007-5329/default.aspx">CVE-2007-5329</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2007-5325/default.aspx">CVE-2007-5325</category><description>On 2007-10-10, we released BrightStor ARCserve Backup patches to address multiple vulnerabilities.&amp;nbsp; We subsequently determined that some of the vulnerability issues were not completely remediated.&amp;nbsp; So, we have now released new patches that completely resolve all of the vulnerability issues.&amp;nbsp; Updated security notice below. 
&amp;nbsp;
Title: [CAID 35724, 35725, 35726]: CA BrightStor...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/196892833" height="1" width="1"/&gt;</description></item><item><title>Welcome to the CA Security Response blog</title><link>http://community.ca.com/blogs/casecurityresponseblog/archive/2007/11/15/welcome-to-the-ca-security-response-blog.aspx</link><pubDate>Fri, 16 Nov 2007 04:33:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:650</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2007/11/15/welcome-to-the-ca-security-response-blog.aspx#comments</comments><description>&amp;nbsp;Welcome to the CA Security Response blog.&amp;nbsp; We plan to use this blog to post information about CA product vulnerabilities, and to discuss a variety of other security topics that we find to be relevant and interesting. 
Share this post: Email it! | bookmark it! | digg it! | reddit!&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityResponseBlog/~4/188211005" height="1" width="1"/&gt;</description></item></channel></rss>
