A remote overflow exists in Veritas Backup Exec for Windows. The name server registration service (benetns.exe) fails to validate the client hostname field during the registration process, resulting in a stack-based buffer overflow. With a specially crafted request, an attacker can cause custom code to run in the processes's current context, which is typically that of domain administrator. This can result in a loss of integrity.
Upgrade to version 8.60.3878 Hotfix 68 or version 9.1.4691 Hotfix 40 or higher, as both have been reported by the vendor to fix this vulnerability. It is also possible to mitigate the flaw by implementing the following workaround(s): Disallow untrusted clients to connect to the affected service by blocking access to the Generic Remote File System (GRFS) port (usually 6101/TCP).
This product uses the Daylife API but is not endorsed or certified by Daylife.
This section lists the latest news and blogs found via the daylife API (and for older items, the technorati API), which mention or otherwise discuss this vulnerability.