CVE-2009-2026

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
10/08/2009
Last modified:
09/04/2025

Description

Stack-based buffer overflow in a token searching function in the dtscore library in Data Transport Services in CA Software Delivery r11.2 C1, C2, C3, and SP4; Unicenter Software Delivery 4.0 C3; CA Advantage Data Transport 3.0 C1; and CA IT Client Manager r12 allows remote attackers to execute arbitrary code via crafted data.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ca:advantage_data_transport:3.0:c1:*:*:*:*:*:*
cpe:2.3:a:ca:it_client_manager:r12:*:*:*:*:*:*:*
cpe:2.3:a:ca:software_delivery:r11:c1:*:*:*:*:*:*
cpe:2.3:a:ca:software_delivery:r11:c2:*:*:*:*:*:*
cpe:2.3:a:ca:software_delivery:r11:c3:*:*:*:*:*:*
cpe:2.3:a:ca:software_delivery:r11:sp4:*:*:*:*:*:*
cpe:2.3:a:ca:unicenter_software_delivery:4.0:c3:*:*:*:*:*:*