Overview
EMC Retrospect Client contains a buffer overflow. This vulnerability may allow a remote attacker to execute arbitrary code on a vulnerable system.
Description
EMC Retrospect Backup and Recovery Software EMC Retrospect is a is a backup and recovery application designed for small to medium sized networks. In a typical Retrospect setup, the EMC Retrospect Client software is installed on all of the computers that require backups. The clients are then configured to listen on port 497/tcp for commands from the EMC Retrospect Server. Note that the EMC Backup runs with SYSTEM privileges on Windows systems and root privileges on UNIX-based systems. |
Impact
If a remote attacker sends a specially crafted packet to an EMC Retrospect Client installation, that attacker may be able to execute arbitrary code with elevated privileges. |
Solution
Upgrade |
In addition, the following workaround may mitigate this vulnerability. |
Vendor Information
CVSS Metrics
| Group | Score | Vector |
|---|---|---|
| Base | ||
| Temporal | ||
| Environmental |
References
Acknowledgements
This issue was reported in EMC Retrospect Knowledgebase Article# 9511. EMC Insignia credits Nicolas Pouvesle from Tenable Software and Stanka ᘊlamun from Acros Security with providing information regarding this issue.
This document was written by Jeff Gennari.
Other Information
| CVE IDs: | CVE-2006-2391 |
| Severity Metric: | 17.56 |
| Date Public: | 2006-05-11 |
| Date First Published: | 2006-05-16 |
| Date Last Updated: | 2006-05-16 18:16 UTC |
| Document Revision: | 58 |