|
|
|
|
| |
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-0547
The original article can be found at: http://www.securityfocus.com/bid/49014
|
| |
Vulnerable Systems:
* Symantec Veritas Storage Foundation 5.1 ,
* Veritas Storage Foundation Cluster File System (SFCFS) 5.1 ,
* Veritas Storage Foundation Cluster File System Enterprise for Oracle RAC (SFCFSORAC) 5.1 ,
* Veritas Dynamic Multi-Pathing (DMP) 5.1,
* NetBackup PureDisk 6.5.x through 6.6.1.x
The Symantec Veritas Enterprise Administrator service ('vxsvc.exe') is prone to multiple buffer-overflow vulnerabilities because it fails to perform adequate boundary checks on user-supplied data.
Attackers may leverage these issues to execute arbitrary code with administrative privileges on the affected system. Failed attacks will cause denial-of-service conditions.
Vendor Status:
Symantec as issued an update for this vulnerablity
Patch Availability:
http://www.symantec.com/business/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2011&suid=20110815_00
CVE Information:
CVE-2011-0547
|
|
|
|
|