First published: Mon Mar 10 2008(Updated: )
Acronis True Image Group Server 1.5.19.191 and earlier, included in Acronis True Image Enterprise Server 9.5.0.8072 and the other True Image packages, allows remote attackers to cause a denial of service (crash) via a packet with an invalid length field, which causes an out-of-bounds read.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Acronis True Image | <=9.5.0.8072 | |
Acronis True Image | <=1.5.19.191 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1279 is classified as a high severity vulnerability due to its potential to cause denial of service.
To fix CVE-2008-1279, upgrade to a version of Acronis True Image Group Server later than 1.5.19.191 or Acronis True Image Enterprise Server later than 9.5.0.8072.
CVE-2008-1279 affects Acronis True Image Group Server versions up to 1.5.19.191 and Acronis True Image Enterprise Server versions up to 9.5.0.8072.
CVE-2008-1279 allows remote attackers to launch a denial of service attack by sending a specially crafted packet.
Yes, CVE-2008-1279 is a remote vulnerability that can be exploited over the network.