int(4923)

Vulnerability Bulletins


Ejecución remota de código en Symantec Altiris Deployment Solution

Vulnerability classification

Property Value
Confidence level Oficial
Impact Obtener acceso
Dificulty Experto
Required attacker level Acceso remoto sin cuenta a un servicio estandar

System information

Property Value
Affected manufacturer Comercial Software
Affected software Symantec Altiris Deployment Solution

Description

se ha descubierto una vulnerabilidad en Symantec Altiris Deployment Solution. La vulnerabilidad reside en un error en la librería AeXNSPkgDLLib.dll.

Un atacante remoto podría ejecutar código arbitrario mediante métodos no determinados.

Solution



Actualización de software

Symantec (SYM09-013)
Altiris Deployment Solution
https://kb.altiris.com/article.asp?article=49069&p=1
Altiris Notification Server
https://kb.altiris.com/article.asp?article=49069&p=1
Symantec Management Platform
https://kb.altiris.com/article.asp?article=49069&p=1
http://kb.altiris.com/

Standar resources

Property Value
CVE CVE-2009-3028
BID

Other resources

Symantec Security Advisory (SYM09-013)
http://www.symantec.com/business/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2009&suid=20090922_00

Version history

Version Comments Date
1.0 Aviso emitido 2009-10-23