Vulnerability Note VU#744137
Symantec VERITAS NetBackup Catalog daemon buffer overflow
The NetBackup Catalog daemon contains a stack-based buffer overflow that could allow a remote attacker to execute arbitrary code on a NetBackup master server.
Netbackup is a data backup and recovery solution with support for "over the network" backup.
By sending a specially crafted packet to a vulnerable Netbackup master a remote, unauthenticated attacker may be able to execute arbitrary code with the privileges of the NetBackup Catalog daemon, typically root.
Apply patches from Symantec/VERITAS
Systems Affected (Learn More)
|Vendor||Status||Date Notified||Date Updated|
|Symantec, Inc.||Affected||-||29 Mar 2006|
|Veritas, Inc.||Affected||-||29 Mar 2006|
CVSS Metrics (Learn More)
This vulnerability was reported by TippingPoint Security Research.
This document was written by Jeff Gennari.
- CVE IDs: CVE-2006-0990
- Date Public: 27 Mar 2006
- Date First Published: 29 Mar 2006
- Date Last Updated: 29 Mar 2006
- Severity Metric: 22.05
- Document Revision: 29
If you have feedback, comments, or additional information about this vulnerability, please send us email.