Multiple vulnerabilities potentially affect NSMs OS have been resolved in the CentOS 6.5-based 2012.2R12 release.
Juniper SIRT is not aware of any malicious exploitation of these vulnerabilities.
Important security issues resolved as a result of these upgrades include:
The following software releases have been updated to resolve this specific issue: 2012.2R12, and all subsequent releases on NSM Appliance.
CentOS 5.7 has reached End of Engineering; customers should upgrade NSM Appliances to CentOS 6.5 to receive ongoing updates.
Customers using software-only package, supplying their own operating systems, should apply updates on their operating systems.
This issue is being tracked as PR 1107641 which is visible on the Customer Support website.
Note: Juniper SIRT's policy is not to evaluate releases which are beyond End of Engineering (EOE) or End of Life (EOL).
Software Releases, patches and updates are available at https://www.juniper.net/support/downloads/ .
There are no viable workarounds for these issues.