three blocks

News

EMC RepliStor security hole

posted on 23 February 2008 10:19


Moderately critical

Security organisation Secunia has reported moderately critical vulnerabilities in EMC's RepliStor product.

The vulnerabilities are caused due to boundary errors when decompressing certain compressed data and can be exploited to cause heap-based buffer overflows via specially crafted packets sent to default port 7144/TCP or 7145/TCP. The vulnerabilities are reported in version 6.2 SP2. Other versions may also be affected.

EMC has issued updates to fix this. Contact EMC Software Technical Support or refer to knowledge base article emc179808.

 



tags:  EMC RepliStor