EMC NetWorker nsrd RPC Service Format String Vulnerability

  Severity: CRITICAL
  CVE Identifier: CVE-2012-2288
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via format string specifiers in a message.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1005220
  Trend Micro Deep Security DPI Rule Name: 1005220 - EMC NetWorker 'nsrd' RPC Service Format String Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • EMC Networker