NETBIOS: RealNetworks Helix DNA Server RTSP Command Remote Heap Buffer Overflow

This signature detects attempts to exploit a known vulnerability against Helix DNA Server. A successful attack can lead to arbitrary code execution.

Extended Description

Heap-based buffer overflow in the RTSP service in Helix DNA Server before 11.1.4 allows remote attackers to execute arbitrary code via an RSTP command containing multiple Require headers.

Affected Products

Realnetworks helix_dna_server

References

CVE: CVE-2012-2469

Short Name
NETBIOS:NBNS:RTSP-CMD-BO
Severity
Major
Recommended
False
Recommended Action
Drop
Category
NETBIOS
Keywords
Buffer CVE-2007-4561 CVE-2012-2469 Command DNA Heap Helix Overflow RTSP RealNetworks Remote Server
Release Date
10/18/2016
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
UDP/137
False Positive
Unknown
Vendors

Realnetworks

CVSS Score

10.0

7.8

Found a potential security threat?