VERITAS Backup Exec CONNECT_CLIENT_AUTH buffer overflow
Added: 12/22/2005CVE: CVE-2005-0773
BID: 14022
OSVDB: 17624
Background
VERITAS Backup Exec is a network backup solution for Windows and Netware servers.Problem
VERITAS Backup Exec is affected by a buffer overflow when handling CONNECT_CLIENT_AUTH requests with the Windows user authentication type. A very long password could overflow the buffer, leading to command execution.Resolution
VERITAS Security Advisory VX05-002.References
http://www.idefense.com/intelligence/vulnerabilities/display.php?id=272&type=vulnerabilitiesLimitations
Exploit works on Backup Exec 9.1 on Windows platforms.Platforms
Windows 2000Windows XP / Windows Server 2003
Back to exploit index