CVE-2017-6401: High severity Veritas NetBackup vulnerability
Published Mar 2, 2017
·Updated
An issue was discovered in Veritas NetBackup before 8.0 and NetBackup Appliance before 3.0. Local arbitrary command execution can occur when using bpcd and bpnbat.
Affected Software
2 affected components
Veritas NetBackup<=8.0
Veritas NetBackup Appliance<=3.0
Event History
Mar 2, 2017
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Data Sourced
via NVD·06:59 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-6401?
CVE-2017-6401 is considered a high-severity vulnerability due to the potential for local arbitrary command execution.
2
How do I fix CVE-2017-6401?
To mitigate CVE-2017-6401, upgrade Veritas NetBackup to version 8.1 or later and Veritas NetBackup Appliance to version 3.1 or later.
3
What effect does CVE-2017-6401 have on my system?
CVE-2017-6401 allows local attackers to execute arbitrary commands, which can lead to system compromise.
4
Which versions of Veritas NetBackup are affected by CVE-2017-6401?
CVE-2017-6401 affects Veritas NetBackup versions before 8.0.
5
Which versions of Veritas NetBackup Appliance are impacted by CVE-2017-6401?
CVE-2017-6401 impacts Veritas NetBackup Appliance versions prior to 3.0.