BakBone NetVault 6.x/7.x multiples vulnerabilities + exploit

"[email protected]" <[email protected]>
Newsgroups gmane.comp.security.vulnerabilities.watch.announce
Message-ID <001d01c5402c$55f3b1e0$0200a8c0__17072.7909928702$1113405817$gmane$org@box>
As a recall, there is one month, the Hat-Squad found 2 security holes
affecting BakBone NetVault all versions.
And as far as I know (sorry if I missed the hotfix), there is still no patch
available .....
We will re-publish this warning as long as (each month) there is no fix.
Some temp. countermeasures are available in both *.pdf

BakBone NetVault 6.x/7.x Remote Heap Buffer Overflow advisory

class101.org/netv-remhbof.pdf

BakBone NetVault 6.x/7.x Remote Heap Buffer Overflow exploit

class101.org/36/55/op.php

BakBone NetVault 6.x/7.x Local Stack Buffer Overflow advisory

class101.org/netv-locsbof.pdf

BakBone NetVault 6.x/7.x Local Stack Buffer Overflow exploit

class101.org/36/55/op.php


-------------------------------------------------------------
class101
Jr. Researcher
Hat-Squad.com
-------------------------------------------------------------
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.