CVE-2011-3477
Summary
| CVE | CVE-2011-3477 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-02-19 19:29:00 UTC |
| Updated | 2018-03-21 14:35:00 UTC |
| Description | GEAR Software CD DVD Filter driver (aka GEARAspiWDM.sys), as used in Symantec Backup Exec System Recovery 8.5 and BESR 2010, Symantec System Recovery 2011, Norton 360, and Norton Ghost, allows local users to cause a denial of service (system crash) via unspecified vectors. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Symantec | Backup Exec System Recovery | 2010 | All | All | All |
| Application | Symantec | Backup Exec System Recovery | 8.5 | All | All | All |
| Application | Symantec | Backup Exec System Recovery | 9.0 | All | All | All |
| Application | Symantec | Backup Exec System Recovery | 2010 | All | All | All |
| Application | Symantec | Backup Exec System Recovery | 8.5 | All | All | All |
| Application | Symantec | Backup Exec System Recovery | 9.0 | All | All | All |
| Application | Symantec | Norton 360 | 5.0 | All | All | All |
| Application | Symantec | Norton 360 | 5.0 | All | All | All |
| Application | Symantec | Norton Ghost | All | All | All | All |
| Application | Symantec | System Recovery 2011 | 10.0 | All | All | All |
| Application | Symantec | System Recovery 2011 | 10.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| GEAR Software CD DVD Filter Driver 'GEARAspiWDM.sys' Multiple Denial of Service Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| Security Advisories Relating to Symantec Products - Symantec Updates Gear Driver for Local Access Denial of Service - 2011-11-09T10:10:28 PST | Symantec | CONFIRM | www.symantec.com | Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.