PT-2007-3338 · Hewlett Packard · Hp-Ux

Publicado

2007-04-09

·

Atualizado

2017-10-11

·

CVE-2007-1993

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HP-UX versions B.11.00 through B.11.23
Description The issue is related to a buffer overflow in the pfs mountd.rpc RPC daemon within the Portable File System (PFS) in HP-UX. This can be exploited by remote attackers who send a call to procedure 5, followed by a crafted payload to procedure 2, allowing them to execute arbitrary code.
Recommendations For HP-UX versions B.11.00 through B.11.23, consider disabling the pfs mountd.rpc daemon until a patch is available to prevent potential exploitation. Restrict access to the PFS to minimize the risk of arbitrary code execution.

Correção

RCE

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-1993
HPSBUX02203

Produtos afetados

Hp-Ux