Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-3659

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2005-3659
Last Modified 07 Mar 2011 12:00:00
Published 31 Dec 2005 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2005-3659

Summary

nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference.

Vulnerable Systems

Application

  • Emc Legato Networker 7.2

  • Emc Legato Networker 7.2 Build172

  • Emc Legato Networker 7.2.1


References

BID - 16275

CONFIRM - http://www.legato.com/support/websupport/product_alerts/011606_NW.htm

IDEFENSE - 20060117 EMC Legato Networker nsrd.exe DoS Vulnerability

SECTRACK - 1015545

SECTRACK - 1015500

SECUNIA - 18615

SECUNIA - 18495

CONFIRM - ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT

XF - legato-nsrd-dos(24173)

VUPEN - ADV-2006-0343

VUPEN - ADV-2006-0233

SUNALERT - 102148


Last Updated: 27 May 2016 10:41:00