nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference.
References
Link | Resource |
---|---|
ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT | Patch |
http://secunia.com/advisories/18495 | Exploit Patch Vendor Advisory |
http://secunia.com/advisories/18615 | Patch Vendor Advisory |
http://securitytracker.com/id?1015500 | Patch |
http://securitytracker.com/id?1015545 | Patch |
http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1 | |
http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375 | Exploit Patch |
http://www.legato.com/support/websupport/product_alerts/011606_NW.htm | Patch |
http://www.securityfocus.com/bid/16275 | Patch |
http://www.vupen.com/english/advisories/2006/0233 | Vendor Advisory |
http://www.vupen.com/english/advisories/2006/0343 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24173 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2005-12-31 05:00
Updated : 2017-07-11 01:33
NVD link : CVE-2005-3659
Mitre link : CVE-2005-3659
CVE.ORG link : CVE-2005-3659
JSON object : View
Products Affected
emc
- legato_networker
CWE
CWE-399
Resource Management Errors