CVE-2005-2996

Multiple heap-based and stack-based buffer overflows in certain DCOM server components in VERITAS Storage Exec Storage Exec 5.3 before Hotfix 9 and StorageCentral 5.2 before Hot Fix 2 allow remote attackers to execute arbitrary code via certain ActiveX controls.
References
Link Resource
http://secunia.com/advisories/16871 Patch Vendor Advisory
http://securityresponse.symantec.com/avcenter/security/Content/2005.09.19.html Exploit Vendor Advisory
http://www.kb.cert.org/vuls/id/620497 Patch Third Party Advisory US Government Resource
http://www.kb.cert.org/vuls/id/927793 Patch Third Party Advisory US Government Resource
http://secunia.com/advisories/16871 Patch Vendor Advisory
http://securityresponse.symantec.com/avcenter/security/Content/2005.09.19.html Exploit Vendor Advisory
http://www.kb.cert.org/vuls/id/620497 Patch Third Party Advisory US Government Resource
http://www.kb.cert.org/vuls/id/927793 Patch Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:symantec_veritas:storage_exec:5.3_rev._2190r:*:*:*:*:*:*:*
cpe:2.3:a:symantec_veritas:storagecentral:5.2_rev._2190r:*:*:*:*:*:*:*

History

21 Nov 2024, 00:00

Type Values Removed Values Added
References () http://secunia.com/advisories/16871 - Patch, Vendor Advisory () http://secunia.com/advisories/16871 - Patch, Vendor Advisory
References () http://securityresponse.symantec.com/avcenter/security/Content/2005.09.19.html - Exploit, Vendor Advisory () http://securityresponse.symantec.com/avcenter/security/Content/2005.09.19.html - Exploit, Vendor Advisory
References () http://www.kb.cert.org/vuls/id/620497 - Patch, Third Party Advisory, US Government Resource () http://www.kb.cert.org/vuls/id/620497 - Patch, Third Party Advisory, US Government Resource
References () http://www.kb.cert.org/vuls/id/927793 - Patch, Third Party Advisory, US Government Resource () http://www.kb.cert.org/vuls/id/927793 - Patch, Third Party Advisory, US Government Resource

Information

Published : 2005-09-20 22:03

Updated : 2024-11-21 00:00


NVD link : CVE-2005-2996

Mitre link : CVE-2005-2996

CVE.ORG link : CVE-2005-2996


JSON object : View

Products Affected

symantec_veritas

  • storagecentral
  • storage_exec