peter bassill · operator
$ cve CVE-2005-0581 JSON

CVE-2005-0581 EXPLOIT

4.6
MEDIUM · CVSS 2.0 · EPSS 46.3% (pctl 99)

Patch early

A public exploit exists.

Description

Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execute arbitrary code via (1) certain long fields in the Checksum item in a GCR request, (2) a long IP address, hostname, or netmask values in a GCR request, (3) a long last parameter in a GETCONFIG packet, or (4) long values in a request with an invalid format.

Scoring

CVSS4.6 (MEDIUM, v2.0)
VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
EPSS46.34% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2005-05-02
Last modified2026-06-16

Affected (1)

VendorProduct
broadcomlicense software

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD