Intrusion Prevention

EMC.NetWorker.nsrindexd.exe.Procedure.Buffer.Overflow

Description

This indicates a possible attack attempt against a buffer overflow vulnerability in EMC NetWorker.
The vulnerability is due to improper boundary check when processing RPC requests in the nsrindexd.exe. An attacker can exploit this by sending crafted RPC message to the target host. Successful attacks may allow an attacker to inject and execute arbitrary code with System level privileges.

Affected Products

EMC NetWorker Prior to 7.6.3 SP1 build 851

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Apply updates or fixes, available from the website:
http://www.securityfocus.com/archive/1/521374/100/0/threaded

CVE References

CVE-2012-0395