CVE-2005-3659Legato Networker vulnerability

CWE-3993 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
4.0%
top 11.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateMay 3

Description

nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDemc/legato_networker7.2, 7.2.1, 7.2_build172+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-g33w-ch5f-5cp8: nsrd2022-05-03
CVEList
CVE-2005-3659: nsrd2006-01-18
CVE-2005-3659 — EMC Legato Networker vulnerability | cvebase