GEAR Software CD DVD Filter Driver 'GEARAspiWDM.sys' Multiple Denial of Service Vulnerabilities
BID:47822
CVE-2011-3477 |Info
GEAR Software CD DVD Filter Driver 'GEARAspiWDM.sys' Multiple Denial of Service Vulnerabilities
| Bugtraq ID: | 47822 |
| Class: | Design Error |
| CVE: |
CVE-2011-3477 |
| Remote: | No |
| Local: | Yes |
| Published: | May 12 2011 12:00AM |
| Updated: | Nov 15 2011 12:51AM |
| Credit: | Stefan LE BERRE (Heurs) |
| Vulnerable: |
Symantec System Recovery 10.0 Symantec Norton Ghost 15.0 Symantec Norton Ghost 14.0 Symantec Norton Ghost 13.0 Symantec Norton Ghost 12.0 Symantec Norton 360 5.0 Symantec Backup Exec System Recovery 9.0 Symantec Backup Exec System Recovery 8.5 GEAR Software GEAR ISO Burn 1.7.1 GEAR Software GEAR Driver 0 GEAR Software GEAR CD DVD Filter Driver 2.2.0.1 |
| Not Vulnerable: |
Symantec System Recovery 10.0.1 Symantec Backup Exec System Recovery 9.0.4 |
Discussion
GEAR Software CD DVD Filter Driver 'GEARAspiWDM.sys' Multiple Denial of Service Vulnerabilities
GEAR Software CD DVD Filter driver is prone to multiple denial-of-service vulnerabilities because it fails to properly handle user-supplied input.
Successful exploits will allow local attackers to crash an affected computer, resulting in a denial-of-service condition. Due to the nature of these issues, code execution may be possible; however, it has not been confirmed.
The following products are affected:
GEAR CD DVD Filter driver 2.2.0.1
GEAR ISO Burn 1.7.1
Symantec Backup Exec System Recovery 8.5
NOTE (May 17, 2011): This BID was previously titled 'Symantec Backup Exec System Recovery 'GEARAspiWDM.sys' Denial of Service Vulnerability' but has been rewritten to reflect that the underlying issue occurs in the GEAR driver.
GEAR Software CD DVD Filter driver is prone to multiple denial-of-service vulnerabilities because it fails to properly handle user-supplied input.
Successful exploits will allow local attackers to crash an affected computer, resulting in a denial-of-service condition. Due to the nature of these issues, code execution may be possible; however, it has not been confirmed.
The following products are affected:
GEAR CD DVD Filter driver 2.2.0.1
GEAR ISO Burn 1.7.1
Symantec Backup Exec System Recovery 8.5
NOTE (May 17, 2011): This BID was previously titled 'Symantec Backup Exec System Recovery 'GEARAspiWDM.sys' Denial of Service Vulnerability' but has been rewritten to reflect that the underlying issue occurs in the GEAR driver.
Exploit / POC
GEAR Software CD DVD Filter Driver 'GEARAspiWDM.sys' Multiple Denial of Service Vulnerabilities
The following exploit code is available:
The following exploit code is available:
Solution / Fix
GEAR Software CD DVD Filter Driver 'GEARAspiWDM.sys' Multiple Denial of Service Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
GEAR Software CD DVD Filter Driver 'GEARAspiWDM.sys' Multiple Denial of Service Vulnerabilities
References:
References:
- Symantec Backup Exec System Recovery Homepage (Symantec)
- GEAR Drivers (GEAR)
- GEAR Software Homepage (GEAR Software)
- Security Advisories Relating to Symantec Products - Symantec Updates Gear Driver (Symantec)