⭐ 欢迎来到虫虫下载站! | 📦 资源下载 📁 资源专辑 ℹ️ 关于我们
⭐ 虫虫下载站

📄 9813.txt

📁 This is the snapshot of Snot Latest Rules
💻 TXT
字号:
Rule--Sid9813--Summary:This event is generated when an attempt is made to exploit a known vulnerability in Symantec NetBackup.--Impact:Serious. Execution of code is possible.--Detailed Information:A buffer overflow condition is present in the Symantec NetBackup application. This event indicates that an attempt has been made to exploit that condition. It may be possible for an attacker to use this vulnerability to execute code on the target host which could lead to further compromise and loss of data integrity on the host.The Symantec VERITAS NetBackup Server manages backup activities via communications with client software. Communication to the client software is typically over TCP port 13782. During the initial communications, connection options are passed in the following format. CONNECTION_OPTIONS=hostname x y zWhere x, y and z denote different port setup configuration flags. Overly long hostnames can trigger a buffer overflow condition during the creation of log entries. Logs are formatted as follows. String too long on line %d.  Truncating "%s"A static buffer of size 0x3E8 is created, and the string is moved onto it. A 100 byte concatonated version of the string is then appended to the buffer. Therefore, any string of greater than 0x3BF will overwrite critical stack values.--Affected Systems:Symantec NetBackup Enterprise Server 6.0 and priorSymantec NetBackup Server 6.0 and priorSymantec NetBackup Client 6.0 and prior--Attack Scenarios:An attacker needs to supply excess data in a transaction using the application. The attacker may then include code of their choosing to be executed on the host.--Ease of Attack:Simple.--False Positives:None known.--False Negatives:None known.--Corrective Action:Apply the appropriate vendor supplied patches.Upgrade to the latest non-affected version of the software.--Contributors:Sourcefire Vulnerability Research TeamMatthew Olney <matthew.olney@sourcefire.com>Nigel Houghton <nigel.houghton@sourcefire.com>--Additional References:--

⌨️ 快捷键说明

复制代码 Ctrl + C
搜索代码 Ctrl + F
全屏模式 F11
切换主题 Ctrl + Shift + D
显示快捷键 ?
增大字号 Ctrl + =
减小字号 Ctrl + -