PT-2013-1584 · Hewlett Packard · Hp Diagnostics Server

Publicado

2013-01-25

·

Atualizado

2019-10-09

·

CVE-2012-3278

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HP Diagnostics Server versions 8.x through 8.07 HP Diagnostics Server versions 9.x through 9.21
Description The issue is a stack-based buffer overflow in the magentservice.exe component. This allows remote attackers to execute arbitrary code via a malformed message packet.
Recommendations For HP Diagnostics Server versions 8.x through 8.07, update to a version outside of this range to resolve the issue. For HP Diagnostics Server versions 9.x through 9.21, update to a version outside of this range to resolve the issue. As a temporary workaround, consider restricting access to the magentservice.exe component to minimize the risk of exploitation.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-3278

Produtos afetados

Hp Diagnostics Server