CVE-2015-4067: Buffer Overflow
Published May 29, 2015
·Updated
Integer overflow in the libnv6 module in Dell NetVault Backup before 10.0.5 allows remote attackers to execute arbitrary code via crafted template string specifiers in a serialized object, which triggers a heap-based buffer overflow.
Affected Software
1 affected component
Dell NetVault Backup=10.0.5
Event History
May 29, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4067?
CVE-2015-4067 is considered a critical vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2015-4067?
To fix CVE-2015-4067, upgrade to Dell NetVault Backup version 10.0.5 or later.
3
What causes CVE-2015-4067?
CVE-2015-4067 is caused by an integer overflow in the libnv6 module leading to a heap-based buffer overflow.
4
Who is affected by CVE-2015-4067?
CVE-2015-4067 affects users of Dell NetVault Backup prior to version 10.0.5.
5
What type of attack can exploit CVE-2015-4067?
CVE-2015-4067 can be exploited through crafted template string specifiers in serialized objects.