iEntry 10th Anniversary RSS Newsletter Advertising
Join the WebProWorld Forum!
Text: Decrease Font Size Increase Font Size | Print Print Article | Share: Delicious Digg StumbleUpon Post to Twitter Post to Facebook
CommentFriday, July 1, 2005

Veritas Exploit In The Wild

A patch has been made available for Veritas Backup Exec, which is vulnerable to a buffer overflow exploit.

An increase of port scanning for machines listening on 10000/tcp for incoming connections led the US CERT team to believe malicious activity targeted at a new vulnerability was taking place.

The Veritas Backup Exec Remote Agent for Windows Servers turned out to be the application listening for those connections. Upon investigation, it was found a buffer overflow could allow a remote attacker to execute arbitrary code with administrative privileges on a system.

The company has released a patch to correct the problem. US-CERT and security company iDefense have verified the patch does correct the problem.

For further protection, administrators should ensure connections through a firewall to port 10000 be limited only to backup servers specifically. Veritas is in the process of merging with security company Symantec, which offers firewall products in its catalog.

David Utter is a staff writer for WebProNews covering technology and business. Email him here.

News Tags: Patch, Exploit

Publish A Comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
1 + 0 =
Solve this simple math problem and enter the result. E.g. for 1+3, enter 4.
SEARCH
Popular WPN Business Resources












Subscribe to WebProNews


Send me relevant info