Novell NetIdentity Agent 'XTIERRPCPIPE' Remote Code Execution Vulnerability

  Severity: CRITICAL
  CVE Identifier: CVE-2009-1350
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Unspecified vulnerability in xtagent.exe in Novell NetIdentity Client before 1.2.4 allows remote attackers to execute arbitrary code by establishing an IPC$ connection to the XTIERRPCPIPE named pipe, and sending RPC messages that trigger a dereference of an arbitrary pointer.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1004791
  Trend Micro Deep Security DPI Rule Name: 1004791 - Novell NetIdentity Agent 'XTIERRPCPIPE' Remote Code Execution Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • novell netidentity_client1.2.3

Featured Stories