Vulnerability Bulletins |
Aumento de privilegios en Symantec Veritas NetBackup |
|
Vulnerability classification |
|
| Property | Value |
| Confidence level | Oficial |
| Impact | Obtener acceso |
| Dificulty | Experto |
| Required attacker level | Acceso remoto sin cuenta a un servicio estandar |
System information |
|
| Property | Value |
| Affected manufacturer | Comercial Software |
| Affected software |
Symantec Veritas NetBackup Enterprise Server/clients Symantec Veritas NetBackup Server/clients |
Description |
|
|
Se ha descubierto una vulnerabilidad en Symantec Veritas NetBackup. La vulnerabilidad reside en un error en la verificación de la información introducida por el usuario durante la configuración inicial de la comunicación en el demonio Veritas network, vnetd. Un atacante remoto podría ejecutar código arbitrario. |
|
Solution |
|
|
Actualización de software Symantec Symantec Veritas NetBackup Enterprise Server/clients / patch 6.0 MP7 S01 Symantec Veritas NetBackup Server/clients / patch 6.5.3.1 http://kb.altiris.com/ Sun (253287) VERITAS (Symantec) NetBackup 6.0 GA / SPARC / patch 136859-01 o posterior VERITAS (Symantec) NetBackup 6.0 MP4 CD / SPARC / patch 136860-01 o posterior VERITAS (Symantec) NetBackup 6.5 / SPARC / 136863-01 o posterior VERITAS (Symantec) NetBackup 6.5 / x86 / patch 136864-01 o posterior http://sunsolve.sun.com/pub-cgi/show.pl?target=patchpage |
|
Standar resources |
|
| Property | Value |
| CVE | |
| BID | 33772 |
Other resources |
|
|
Symantec Security Advisory (SYM09-002) http://securityresponse.symantec.com/avcenter/security/Content/2009.02.17.html Sun Alert Notification (253287) http://sunsolve.sun.com/search/document.do?assetkey=1-66-253287-1 |
|
Version history |
||
| Version | Comments | Date |
| 1.0 | Aviso emitido | 2009-02-18 |
| 1.1 | Aviso emitido por Sun(253287) | 2009-04-20 |






