CVE-2005-3116
Summary
| CVE | CVE-2005-3116 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-11-18 06:03:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Stack-based buffer overflow in a shared library as used by the Volume Manager daemon (vmd) in VERITAS NetBackup Enterprise Server 5.0 MP1 to MP5 and 5.1 up to MP3A allows remote attackers to execute arbitrary code via a crafted packet. |
Risk And Classification
Primary CVSS: v2.0 10 from [email protected]
AV:N/AC:L/Au:N/C:C/I:C/A:C
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Symantec Veritas | Netbackup | 5.0_with_mp1 | All | All | All |
| Application | Symantec Veritas | Netbackup | 5.0_with_mp2 | All | All | All |
| Application | Symantec Veritas | Netbackup | 5.0_with_mp3 | All | All | All |
| Application | Symantec Veritas | Netbackup | 5.0_with_mp4 | All | All | All |
| Application | Symantec Veritas | Netbackup | 5.0_with_mp5 | All | All | All |
| Application | Symantec Veritas | Netbackup | 5.1_without_mp | All | All | All |
| Application | Symantec Veritas | Netbackup | 5.1_with_mp1 | All | All | All |
| Application | Symantec Veritas | Netbackup | 5.1_with_mp2 | All | All | All |
| Application | Symantec Veritas | Netbackup | 5.1_with_mp3a | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Symantec Advisory SYM05-024: Exploitation of a buffer overflow vulnerability in VERITAS NetBackup (tm) Enterprise Server/Server 5.0 and 5.1 could potentially lead to a remote Denial Of Service or remote code execution. | af854a3a-2127-422b-91ae-364da2661108 | seer.support.veritas.com | Patch, Vendor Advisory |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Exploit, Vendor Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| VERITAS NetBackup Volume Manager Daemon Buffer Overflow Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Patch |
| SecurityTracker.com Archives - Veritas NetBackup Buffer Overflow in vmd Shared Library Lets Remote Users Execute Arbitrary Code | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | Patch |
| www.osvdb.org/20674 | af854a3a-2127-422b-91ae-364da2661108 | www.osvdb.org | Patch |
| Advisory: 11.10.05 // VeriSign iDefense | af854a3a-2127-422b-91ae-364da2661108 | www.idefense.com | Patch |
| VERITAS NetBackup 5.x: Buffer Overflow in Shared Library used by Volume Manager Daemon | af854a3a-2127-422b-91ae-364da2661108 | securityresponse.symantec.com | Patch |
| Secunia - Advisories - VERITAS NetBackup "vmd" Shared Library Buffer Overflow Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Patch, Vendor Advisory |
| US-CERT Vulnerability Note VU#574662 | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | Patch, US Government Resource |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Exploit, Vendor Advisory |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.