EMC Autostart Domain Name Logging Remote Code Execution Vulnerability
Severity: HIGH
CVE Identifier: CVE-2011-2735
Advisory Date: JUL 21, 2015
DESCRIPTION
Multiple buffer overflows in EMC AutoStart 5.3.x and 5.4.x before 5.4.1 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code by sending a crafted message over TCP.
TREND MICRO PROTECTION INFORMATION
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1004806
Trend Micro Deep Security DPI Rule Name: 1004806 - EMC Autostart Domain Name Logging Remote Code Execution Vulnerability
AFFECTED SOFTWARE AND VERSION
- emc autostart 5.3
- emc autostart 5.4