VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attackers to cause a denial of service (Remote Agent crash) via (1) a crafted packet in NDMLSRVR.DLL or (2) a request packet with an invalid (non-0) "Error Status" value, which triggers a null dereference.
References
Link | Resource |
---|---|
http://secunia.com/advisories/15789 | Broken Link |
http://securitytracker.com/id?1014273 | Broken Link Third Party Advisory VDB Entry |
http://seer.support.veritas.com/docs/276533.htm | Broken Link |
http://seer.support.veritas.com/docs/277485.htm | Broken Link |
http://www.idefense.com/application/poi/display?id=270&type=vulnerabilities&flashstatus=true | Broken Link Vendor Advisory |
http://www.idefense.com/application/poi/display?id=271&type=vulnerabilities | Broken Link |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2005-06-28 04:00
Updated : 2023-12-28 15:29
NVD link : CVE-2005-0772
Mitre link : CVE-2005-0772
CVE.ORG link : CVE-2005-0772
JSON object : View
Products Affected
veritas
- backup_exec
CWE
CWE-476
NULL Pointer Dereference