iDefense Security Advisory 04.09.08 – Remote exploitation of a buffer overflow vulnerability in EMC Corp.’s DiskXtender could allow an attacker to execute arbitrary code with the privileges of the affected service. The File System Manager is prone to a stack-based buffer overflow vulnerability. When handling requests on the RPC interface with UUID b157b800-aef5-11d3-ae49-00600834c15f, the service does not properly validate the length of a string in the request. By making a specially crafted request, a stack based buffer overflow occurs. iDefense confirmed the existence of this vulnerability in DiskXtender version 6.20.060 for Windows. Previous versions may also be affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/65429/04.09.08-2.txt
Source: https://packetstormsecurity.com/files/65429/iDEFENSE-Security-Advisory-2008-04-09.2.html