|
Brought to you by:
Suppliers of:
|
|
|
| |
| This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Hewlett-Packard OpenView Network Node Manager. |
| |
Credit:
The information has been provided by Aaron Portnoy.
The original article can be found at: http://dvlabs.tippingpoint.com/advisory/TPTI-09-13
|
| |
Vulnerable Systems:
* HP OpenView Network Node Manager
Authentication is not required to exploit this vulnerability. The specific flaw exists within the snmpviewer.exe CGI application. This process copies the Host header from HTTP requests into a fixed-length buffer located on the stack via a call to strcat. By specifying a string length within a certain range this buffer can be overflowed leading to arbitrary code execution.
Patch Availability:
Hewlett-Packard has issued an update to correct this vulnerability. More details can be found at:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01950877
CVE Information:
CVE-2009-4180
Disclosure Timeline:
2009-07-23 - Vulnerability reported to vendor
2009-12-09 - Coordinated public release of advisory
-------------------------------------------------------------------------------------------------------------------------------
This vulnerability and over 10,000 others are identified and reported by AVDS, the most technically sophisticated network vulnerability assessment and management system available.
*
|
|
|
|
|