First published: Thu Nov 29 2007(Updated: )
The Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.6235 allows remote attackers to cause a denial of service (NULL dereference and service crash) via a crafted packet to port 5633/tcp.
Credit: PSIRT-CNA@flexerasoftware.com
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Backup Exec System Recovery | =11.0.7170 | |
Symantec Backup Exec System Recovery | =11.0.6235 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4346 is considered a high severity vulnerability due to its potential to cause a denial of service.
To remediate CVE-2007-4346, upgrading to a patched version of Symantec Backup Exec is recommended.
CVE-2007-4346 affects Symantec Backup Exec for Windows Servers 11d build 11.0.7170 and version 11.0.6.6235.
Yes, CVE-2007-4346 can be exploited remotely through a crafted packet sent to port 5633/tcp.
The impact of CVE-2007-4346 is a denial of service, which results in a NULL dereference and subsequent service crash.