CVE-2005-3659

nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference.
References
Link Resource
ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT Patch
http://secunia.com/advisories/18495 Exploit Patch Vendor Advisory
http://secunia.com/advisories/18615 Patch Vendor Advisory
http://securitytracker.com/id?1015500 Patch
http://securitytracker.com/id?1015545 Patch
http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1
http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375 Exploit Patch
http://www.legato.com/support/websupport/product_alerts/011606_NW.htm Patch
http://www.securityfocus.com/bid/16275 Patch
http://www.vupen.com/english/advisories/2006/0233 Vendor Advisory
http://www.vupen.com/english/advisories/2006/0343 Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/24173
ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT Patch
http://secunia.com/advisories/18495 Exploit Patch Vendor Advisory
http://secunia.com/advisories/18615 Patch Vendor Advisory
http://securitytracker.com/id?1015500 Patch
http://securitytracker.com/id?1015545 Patch
http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1
http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375 Exploit Patch
http://www.legato.com/support/websupport/product_alerts/011606_NW.htm Patch
http://www.securityfocus.com/bid/16275 Patch
http://www.vupen.com/english/advisories/2006/0233 Vendor Advisory
http://www.vupen.com/english/advisories/2006/0343 Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/24173
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:emc:legato_networker:7.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:legato_networker:7.2.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:legato_networker:7.2_build172:*:*:*:*:*:*:*

History

21 Nov 2024, 00:02

Type Values Removed Values Added
References () ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT - Patch () ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT - Patch
References () http://secunia.com/advisories/18495 - Exploit, Patch, Vendor Advisory () http://secunia.com/advisories/18495 - Exploit, Patch, Vendor Advisory
References () http://secunia.com/advisories/18615 - Patch, Vendor Advisory () http://secunia.com/advisories/18615 - Patch, Vendor Advisory
References () http://securitytracker.com/id?1015500 - Patch () http://securitytracker.com/id?1015500 - Patch
References () http://securitytracker.com/id?1015545 - Patch () http://securitytracker.com/id?1015545 - Patch
References () http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1 - () http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1 -
References () http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375 - Exploit, Patch () http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375 - Exploit, Patch
References () http://www.legato.com/support/websupport/product_alerts/011606_NW.htm - Patch () http://www.legato.com/support/websupport/product_alerts/011606_NW.htm - Patch
References () http://www.securityfocus.com/bid/16275 - Patch () http://www.securityfocus.com/bid/16275 - Patch
References () http://www.vupen.com/english/advisories/2006/0233 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/0233 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2006/0343 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/0343 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/24173 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/24173 -

Information

Published : 2005-12-31 05:00

Updated : 2024-11-21 00:02


NVD link : CVE-2005-3659

Mitre link : CVE-2005-3659

CVE.ORG link : CVE-2005-3659


JSON object : View

Products Affected

emc

  • legato_networker
CWE
CWE-399

Resource Management Errors