APP: Retrospect Agent Denial of Service

This signature detects attempts to exploit a known vulnerability against the EMC Retrospect Backup agent. This vulnerability is a result of improper handling of specially crafted packets. An unauthenticated remote attacker can exploit this vulnerability creating a denial-of-service condition; thereby causing the application to terminate and prevent backups from occurring on that system.

Extended Description

Dantz Retrospect Backup Client is prone to a remote denial-of-service vulnerability. An unauthenticated, remote attacker can cause the client to fail. This issue has been addressed in Retrospect Backup Client 6.5.138 and 7.0.109; earlier versions are vulnerable. The Apple Retrospect Backup Client is reportedly not affected.

Affected Products

Dantz retrospect_client

Short Name
APP:EMC-DOS
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
Agent CVE-2006-0995 Denial Retrospect Service bid:16933 of
Release Date
03/21/2006
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3727
Port
TCP/497
False Positive
Unknown
Vendors

Dantz

CVSS Score

5.0

Found a potential security threat?