Vulnerabilities > CVE-2007-4346 - Resource Management Errors vulnerability in Symantec Backupexec System Recovery 11.0.6235/11.0.7170
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
The Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.6235 allows remote attackers to cause a denial of service (NULL dereference and service crash) via a crafted packet to port 5633/tcp.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Common Weakness Enumeration (CWE)
Nessus
NASL family | Windows |
NASL id | BEWS_DOS.NASL |
description | Backup Exec for Windows Servers, a commercial backup product from Symantec, is installed on the remote host. The version of the Backup Exec Job Engine, bengine.exe, installed as part of Backup Exec for Windows Server on the remote host contains a NULL pointer dereference error when handling exceptions. Using a specially crafted packet, an attacker can leverage this issue to crash the affected service. In addition, it is affected by two overflow errors that can cause the service to enter an infinite loop, resulting in high CPU utilization and / or memory exhaustion. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 28361 |
published | 2007-11-29 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/28361 |
title | Symantec Backup Exec for Windows Servers Denial of Service Vulnerabilities |
code |
|
Seebug
bulletinFamily | exploit |
description | BUGTRAQ ID: 26028 CVE(CAN) ID: CVE-2007-4346 Symantec Backup Exec是一款全面的数据备份解决方案。 Backup Exec的Job引擎服务(bengine.exe)中存在空指针引用漏洞,远程攻击者可能利用此漏洞导致服务不可用。 如果远程攻击者向该服务的默认5633/TCP端口发送了畸形报文并触发了异常的话,就可能触发这个漏洞,导致监听的服务崩溃。 Symantec Backup Exec for Windows Servers 11d 目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载: <a href=http://support.veritas.com/docs/294241 target=_blank>http://support.veritas.com/docs/294241</a> <a href=http://support.veritas.com/docs/294237 target=_blank>http://support.veritas.com/docs/294237</a> |
id | SSV:2513 |
last seen | 2017-11-19 |
modified | 2007-11-30 |
published | 2007-11-30 |
reporter | Root |
title | Symantec Backup Exec Job引擎空指针引用拒绝服务漏洞 |
References
- http://secunia.com/advisories/26975
- http://secunia.com/secunia_research/2007-74/advisory/
- http://securityresponse.symantec.com/avcenter/security/Content/2007.11.27.html
- http://securitytracker.com/id?1019001
- http://www.securityfocus.com/archive/1/484318/100/0/threaded
- http://www.securityfocus.com/archive/1/484333/100/0/threaded
- http://www.securityfocus.com/bid/26028
- http://www.vupen.com/english/advisories/2007/4019
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38676