CVE-2011-0321: Medium severity networker vulnerability
librpc.dll in nsrexecd in EMC NetWorker before 7.5 SP4, 7.5.3.x before 7.5.3.5, and 7.6.x before 7.6.1.2 does not properly mitigate the possibility of a spoofed localhost source IP address, which allows remote attackers to (1) register or (2) unregister RPC services, and consequently cause a denial of service or obtain sensitive information from interprocess communication, via crafted UDP packets containing service commands.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0321?
CVE-2011-0321 is rated as a medium severity vulnerability.
What types of attacks can CVE-2011-0321 enable?
CVE-2011-0321 can allow attackers to register or unregister RPC services, which can lead to denial of service.
Which versions of EMC NetWorker are affected by CVE-2011-0321?
CVE-2011-0321 affects EMC NetWorker versions prior to 7.5 SP4, including various other specific versions.
How do I fix CVE-2011-0321?
To fix CVE-2011-0321, upgrade to EMC NetWorker version 7.5 SP4 or later.
Is there a workaround for CVE-2011-0321?
Currently, there are no established workarounds for mitigating CVE-2011-0321 without applying the available updates.