The Register®

Biting the hand that feeds IT

Symantec plugs vulnerabilities in NetBackup

Holey night

Symantec says it has fixed vulnerabilities in its NetBackup storage software identified by TippingPoint.

A brace of good ol' buffer overflow problems hit the backup program, meaning "A remote attacker who successfully gains access to the targeted system can append commands to a valid command and potentially leverage this issue to run arbitary commands with elevated privilege on the targeted system."

Symantec says there are no known exploitations so far. Maintenance updates are now available to patch the holes. In a statement, the firm said: "Symantec takes the security of our products and our customers very seriously." You'd hope.

"Symantec engineers have verified and corrected these issues in all currently supported versions of NetBackup," the firm added.

An internal review recently identified other security quibbles in NetBackup, which Symantec was working on fixing when the two new ones were Tipping-Pointed out.

The fixes are available here. ®

Free report. "Comparing Data Center Batteries, Flywheels, and Ultracapacitors: What is the best energy storage for you?"

Don’t Miss

Warning GoEnterprises throw caution to the wind in 802.11n rush

Standards bodies far behind the WLAN adoption curve

Warning: two wayCan CDP render backup redundant?

Comment My brain is mush

Chip DieCray, Intel, and Microsoft birth baby supercomputer

Gigaflops for mom and pop shops

Recycle signScrap PCs smuggled, dumped in Africa, China

Charity calls on UK.gov to WEEEd out rogue traders