CVE-2005-0581

Broadcom License Software - Buffer Overflow

Title source: rule

Description

Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execute arbitrary code via (1) certain long fields in the Checksum item in a GCR request, (2) a long IP address, hostname, or netmask values in a GCR request, (3) a long last parameter in a GETCONFIG packet, or (4) long values in a request with an invalid format.

Exploits (7)

metasploit WORKING POC NORMAL
by hdm, aushack · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/license/calicclnt_getconfig.rb
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16744
metasploit WORKING POC NORMAL
by hdm, aushack · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/license/calicserv_getconfig.rb
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16745
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16414
metasploit WORKING POC NORMAL
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/brightstor/license_gcr.rb
exploitdb WORKING POC
cremotewindows
https://www.exploit-db.com/exploits/859

Scores

EPSS 0.7125
EPSS Percentile 98.7%

Classification

Status draft

Affected Products (1)

broadcom/license_software

Timeline

Published May 02, 2005
Tracked Since Feb 18, 2026