{"api_version":"1","generated_at":"2026-07-23T07:41:07+00:00","cve":"CVE-2005-3659","urls":{"html":"https://cve.report/CVE-2005-3659","api":"https://cve.report/api/cve/CVE-2005-3659.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-3659","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-3659"},"summary":{"title":"CVE-2005-3659","description":"nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-12-31 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["CWE-399","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5","severity":"","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1","name":"http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"http://www.vupen.com/english/advisories/2006/0343","name":"http://www.vupen.com/english/advisories/2006/0343","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1015545","name":"http://securitytracker.com/id?1015545","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"SecurityTracker.com Archives - Sun StorEdge 'nsrd.exe' and 'nsrexecd.exe' Heap Overflows Let Remote Users Execute Arbitrary Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375","name":"http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"],"title":"Accenture | Let there be change","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/18615","name":"http://secunia.com/advisories/18615","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Secunia - Advisories - Sun StorEdge Enterprise Backup / Solstice Backup Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2006/0233","name":"http://www.vupen.com/english/advisories/2006/0233","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/16275","name":"http://www.securityfocus.com/bid/16275","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"EMC Legato Networker Multiple Remote Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT","name":"ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"","mime":"text/plain","httpstatus":"200","archivestatus":"404"},{"url":"http://securitytracker.com/id?1015500","name":"http://securitytracker.com/id?1015500","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"EMC Legato NetWorker 'nsrd.exe' and 'nsrexecd.exe' Heap Overflows Let Remote Users Execute Arbitrary Code - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24173","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24173","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.legato.com/support/websupport/product_alerts/011606_NW.htm","name":"http://www.legato.com/support/websupport/product_alerts/011606_NW.htm","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Data Protection Suite – Backup Solution  | Dell Technologies US","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/18495","name":"http://secunia.com/advisories/18495","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"],"title":"Secunia - Advisories - EMC NetWorker Denial of Service and Buffer Overflow Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-3659","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-3659","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"3659","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"emc","cpe5":"legato_networker","cpe6":"7.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"3659","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"emc","cpe5":"legato_networker","cpe6":"7.2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"3659","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"emc","cpe5":"legato_networker","cpe6":"7.2_build172","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T23:17:23.442Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"1015545","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1015545"},{"name":"18615","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/18615"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.legato.com/support/websupport/product_alerts/011606_NW.htm"},{"name":"20060117 EMC Legato Networker nsrd.exe DoS Vulnerability","tags":["third-party-advisory","x_refsource_IDEFENSE","x_transferred"],"url":"http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375"},{"name":"ADV-2006-0343","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2006/0343"},{"name":"18495","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/18495"},{"name":"1015500","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1015500"},{"name":"16275","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/16275"},{"name":"ADV-2006-0233","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2006/0233"},{"name":"legato-nsrd-dos(24173)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24173"},{"name":"102148","tags":["vendor-advisory","x_refsource_SUNALERT","x_transferred"],"url":"http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2006-01-16T00:00:00.000Z","descriptions":[{"lang":"en","value":"nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"1015545","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1015545"},{"name":"18615","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/18615"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.legato.com/support/websupport/product_alerts/011606_NW.htm"},{"name":"20060117 EMC Legato Networker nsrd.exe DoS Vulnerability","tags":["third-party-advisory","x_refsource_IDEFENSE"],"url":"http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375"},{"name":"ADV-2006-0343","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2006/0343"},{"name":"18495","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/18495"},{"name":"1015500","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1015500"},{"name":"16275","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/16275"},{"name":"ADV-2006-0233","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2006/0233"},{"name":"legato-nsrd-dos(24173)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24173"},{"name":"102148","tags":["vendor-advisory","x_refsource_SUNALERT"],"url":"http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1"},{"tags":["x_refsource_CONFIRM"],"url":"ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-3659","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1015545","refsource":"SECTRACK","url":"http://securitytracker.com/id?1015545"},{"name":"18615","refsource":"SECUNIA","url":"http://secunia.com/advisories/18615"},{"name":"http://www.legato.com/support/websupport/product_alerts/011606_NW.htm","refsource":"CONFIRM","url":"http://www.legato.com/support/websupport/product_alerts/011606_NW.htm"},{"name":"20060117 EMC Legato Networker nsrd.exe DoS Vulnerability","refsource":"IDEFENSE","url":"http://www.idefense.com/intelligence/vulnerabilities/display.php?id=375"},{"name":"ADV-2006-0343","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2006/0343"},{"name":"18495","refsource":"SECUNIA","url":"http://secunia.com/advisories/18495"},{"name":"1015500","refsource":"SECTRACK","url":"http://securitytracker.com/id?1015500"},{"name":"16275","refsource":"BID","url":"http://www.securityfocus.com/bid/16275"},{"name":"ADV-2006-0233","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2006/0233"},{"name":"legato-nsrd-dos(24173)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24173"},{"name":"102148","refsource":"SUNALERT","url":"http://sunsolve.sun.com/searchproxy/document.do?assetkey=1-26-102148-1"},{"name":"ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT","refsource":"CONFIRM","url":"ftp://ftp.legato.com/pub/NetWorker/Updates/LGTpa83990/README.TXT"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-3659","datePublished":"2006-01-18T02:00:00.000Z","dateReserved":"2005-11-18T00:00:00.000Z","dateUpdated":"2024-08-07T23:17:23.442Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-12-31 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["CWE-399","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:emc:legato_networker:7.2:*:*:*:*:*:*:*","matchCriteriaId":"9C2D787A-DCA0-45CE-A5C3-41850970B468"},{"vulnerable":true,"criteria":"cpe:2.3:a:emc:legato_networker:7.2.1:*:*:*:*:*:*:*","matchCriteriaId":"4FA00514-6EFF-4BE4-A49E-30C4FF42998B"},{"vulnerable":true,"criteria":"cpe:2.3:a:emc:legato_networker:7.2_build172:*:*:*:*:*:*:*","matchCriteriaId":"7E0DFF6E-6234-4C04-AD61-BDB52CFFF7EF"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"3659","Ordinal":"1","Title":"CVE-2005-3659","CVE":"CVE-2005-3659","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"3659","Ordinal":"1","NoteData":"nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference.","Type":"Description","Title":"CVE-2005-3659"},{"CveYear":"2005","CveId":"3659","Ordinal":"2","NoteData":"2006-01-17","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"3659","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}