Veritas.Storage.Foundation.VxSchedService.Authentication.Bypass

description-logoDescription

This indicates an attack attempt against a buffer-overflow vulnerability in Symantec Veritas Storage Foundation Scheduler Service.
The vulnerability is caused by an error when the vulnerable software handles a specially crafted NTLMSSP authentication. It allows a remote attacker to execute arbitrary code.

affected-products-logoAffected Products

Symantec Storage Foundation for Windows 5.1
Symantec Storage Foundation for Windows 5.0 RP1
Symantec Storage Foundation for Windows 5.0

Impact logoImpact

System Compromise

recomended-action-logoRecommended Actions

Apply the patch supplied by the vendor:

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2023-08-10 25.619 Name:Symantec.
Veritas.
Storage.
Foundation.
Authentication.
Bypass:Veritas.
Storage.
Foundation.
VxSchedService.
Authentication.
Bypass