EMC Autostart Domain Name Logging Remote Code Execution Vulnerability

  Severity: HIGH
  CVE Identifier: CVE-2011-2735
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Multiple buffer overflows in EMC AutoStart 5.3.x and 5.4.x before 5.4.1 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code by sending a crafted message over TCP.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1004806
  Trend Micro Deep Security DPI Rule Name: 1004806 - EMC Autostart Domain Name Logging Remote Code Execution Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • emc autostart 5.3
  • emc autostart 5.4