CVE-2007-1593
Summary
| CVE | CVE-2007-1593 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-06-04 16:30:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | The administrative service in Symantec Veritas Volume Replicator (VVR) for Windows 3.1 through 4.3, and VVR for Unix 3.5 through 5.0, in Symantec Storage Foundation products allows remote attackers to cause a denial of service (memory consumption and service crash) via a crafted packet to the service port (8199/tcp) that triggers a request for more memory than available, which causes the service to write to an invalid pointer. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
NoneAvailability
PartialAV:N/AC:L/Au:N/C:N/I:N/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Symantec | Veritas Volume Replicator | 3.1 | All | windows | All |
| Application | Symantec | Veritas Volume Replicator | 3.5 | All | unix | All |
| Application | Symantec | Veritas Volume Replicator | 4.0 | All | unix | All |
| Application | Symantec | Veritas Volume Replicator | 4.1 | All | unix | All |
| Application | Symantec | Veritas Volume Replicator | 4.1 | All | windows | All |
| Application | Symantec | Veritas Volume Replicator | 4.1 | rp1 | windows | All |
| Application | Symantec | Veritas Volume Replicator | 4.2 | All | windows | All |
| Application | Symantec | Veritas Volume Replicator | 4.2 | rp1 | windows | All |
| Application | Symantec | Veritas Volume Replicator | 4.2 | rp2 | windows | All |
| Application | Symantec | Veritas Volume Replicator | 4.3 | All | windows | All |
| Application | Symantec | Veritas Volume Replicator | 4.3 | mp3 | windows | All |
| Application | Symantec | Veritas Volume Replicator | 5.0 | All | unix | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Symantec Veritas Volume Replicator Administrative Service Denial of Service Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| eCrimeLabs - Helps you mitigate your cyber threats | af854a3a-2127-422b-91ae-364da2661108 | cirt.dk | |
| labs.idefense.com/intelligence/vulnerabilities/display.php | af854a3a-2127-422b-91ae-364da2661108 | labs.idefense.com | Patch, Vendor Advisory |
| Symantec Storage Foundation Solutions Suites: Veritas Volume Replicator, Denial of Service in Veritas Administrative Service | af854a3a-2127-422b-91ae-364da2661108 | www.symantec.com | Patch |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| VERITAS Storage Foundation Veritas Volume Replicator Administration Service Can Be Crashed By Remote Users - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | Vendor Advisory |
| Symantec Veritas Storage Foundation Veritas Volume Replicator Denial of Service - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| osvdb.org/36102 | af854a3a-2127-422b-91ae-364da2661108 | osvdb.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.