Title : VERITAS NetBackup Volume Manager Daemon Buffer Overflow Issue VUPEN ID : VUPEN/ADV-2005-2349 CVE ID : CVE-2005-3116
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-11-08
Technical Description
A vulnerability has been identified in VERITAS NetBackup, which could be exploited by remote attackers to execute arbitrary commands or cause a denial of service. This flaw is due to a buffer overflow error in a shared library used by the volume manager daemon (vmd) that does not properly handle specially crafted requests (port 13701), which could be exploited by remote attackers to execute arbitrary commands with root/SYSTEM privileges.