Description
npvmgr.exe in BakBone NetVault Backup 8.22 Build 29 allows remote attackers to cause a denial of service (daemon crash) via a packet to (1) TCP or (2) UDP port 20031 with a large value in an unspecified size field, which is not properly handled in a malloc operation. NOTE: some of these details are obtained from third party information.
Affected products
- bakbone / netvault8.22 – 8.22
References
- MISChttp://www.securitytracker.com/id?1022941
- MISChttp://osvdb.org/58329
- MISChttp://www.securityfocus.com/bid/36489
- MISChttp://www.insight-tech.org/index.php?p=bakbone-netvault-backup-8-22-build-29-remote-dos
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/53434
- VENDOR_ADVISORYhttp://secunia.com/advisories/36847