NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home / News / Security

Security


Symantec NetBackup PureDisk Security Flaw

The company confirmed the vulnerability and released a fix

By Bogdan Popa, Security and Search Engines Editor

30th of November 2006, 10:35 GMT

Adjust text size:


"NetBackup PureDisk Remote Office Edition offers storage and bandwidth-optimized data protection for remote offices while PureDisk uses disk-based backup technology to enable companies to eliminate the risk and cost of tape from remote offices," as
Symantec says.

"Symantec has released an update to address a security concern in PHP, a commonly used HTML-embedded scripting language, for Symantec's Veritas NetBackup 6.0 PureDisk Remote Office Edition. A heap overflow has been reported in the version of PHP shipped with the affected product builds listed below.

The management interface of Symantec's product is accessible only through an SSL connection by default. Depending on configuration, however; an unauthorized user could potentially attempt to execute arbitrary code in the context of the vulnerable server, which runs in non-privileged mode by default," Symantec said in a security advisory.

Secunia rated the flaw "highly critical" and said the solution is to apply the vendor patch. Symantec said that a patch was published and the only affected product is Symantec Veritas NetBackup PureDisk Remote Office Edition version 6.0.

"Symantec engineers have addressed the reported issue and provided Security updates. Symantec strongly recommends all customers apply the latest security update identified above or upgrade to Symantec Veritas NetBackup PureDisk Remote Office Edition 6.1 to protect against threats of this nature. Symantec knows of no exploitation of or adverse customer impact from this issue," the company responded.
Read by 942 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
Good (3.0/5) 8 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2009 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


Symantec: Security Threat Is Gearing Toward Electronic Transactions

Symantec Unveils Norton 360 Public Beta

STOP! This Website Can Harm Your Computer!

Symantec's Host Security Metasystem

How to Handle Vulnerabilities

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM