Email us! Subscribe to Liquidmatrix!

Symantec Veritas Netbackup Multiple Vulnerabilities

This is not an end of the world type of scenario. But, I do know that quite a few of our readers use this product set.

From Secunia:

Description:
Some vulnerabilities have been reported in Symantec Veritas Netbackup, which can be exploited by malicious people to compromise a vulnerable system.

1) A logic error in the main Netbackup service (bpcd.exe) can be exploited via command chaining to make the service execute arbitrary commands.

2) A boundary error in the main Netbackup service (bpcd.exe) when parsing long requests can be exploited to cause a stack-based buffer overflow by passing an overly long request with a malformed length field to the service.

3) A boundary error in the main Netbackup service (bpcd.exe) when parsing CONNECT_OPTIONS requests can be exploited to cause a stack-based buffer overflow via an overly long request

Article Link

Tags: , ,

Tag It:
  • Digg
  • del.icio.us
  • Slashdot
  • Technorati
  • SphereIt
  • StumbleUpon
  • Fark
  • YahooMyWeb
  • Furl
  • Spurl
  • Ma.gnolia
  • NewsVine
Related Articles:

  • Symantec NetBackup PureDisk PHP Buffer Overflow
  • Symantec Kills Some Of Their Security Appliances
  • Symantec Mail Security Appliance File Parsing Vulnerabilities
  • Symantec Sues Microsoft on Storage Tech
  • Piracy Ring Hits Symantec
  • Leave a Comment