First published: Mon Mar 10 2008(Updated: )
Acronis True Image Windows Agent 1.0.0.54 and earlier, included in Acronis True Image Enterprise Server 9.5.0.8072 and the other True Image packages, allows remote attackers to cause a denial of service (crash) via a malformed packet to port 9876, which triggers a NULL pointer dereference.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Acronis True Image | <=9.5.0.8072 | |
Acronis True Image | <=1.0.0.54 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1280 is classified as a high severity vulnerability due to its potential to cause denial of service by crashing the application.
To fix CVE-2008-1280, upgrade to Acronis True Image Enterprise Server version 9.5.0.8073 or later.
CVE-2008-1280 affects Acronis True Image versions up to and including 9.5.0.8072 and Acronis True Image Windows Agent versions up to and including 1.0.0.54.
Yes, CVE-2008-1280 can be exploited remotely by sending a malformed packet to port 9876.
CVE-2008-1280 is a denial of service vulnerability caused by a NULL pointer dereference.