[VulnWatch] BakBone Netvault 6.x/7.x Remote Heap Buffer Overflow

From: class101@HAT-SQUAD.com
Date: Fri Apr 01 2005 - 06:52:18 PST


According to their website (bakbone.com),
BakBone Netvault 6.x/7.x is a professional backup software with several
offices in the world and some pro customers as Apple, AT&T, Pirelli, LMU,
HP, NIP,NASA, etc....

A Vulnerability exists in the netvault server

advisory: class101.org/netv-remhbof.pdf
poc: class101.org/36/55/op.php

recommendation: to block incoming connections to 20031/tcp, 20031/udp
-------------------------------------------------------------
class101
Jr. Researcher
Hat-Squad.com
-------------------------------------------------------------



This archive was generated by hypermail 2.1.3 : Fri Apr 01 2005 - 08:08:59 PST