Heap-based buffer overflow in the Veritas Enterprise Administrator (VEA) service (aka vxsvc.exe) in Symantec Veritas Storage Foundation 5.0 allows remote malicious users to execute arbitrary code via a packet with a crafted value of a certain size field, which is not checked for consistency with the actual buffer size.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
symantec veritas storage foundation 5.0 |