PT-2004-1796 · Hewlett Packard · Hp-Ux
Published
2004-07-27
·
Updated
2008-10-24
·
CVE-2004-0716
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
HP-UX 11
Description
A buffer overflow issue exists in the DCE daemon (DCED) for the DCE endpoint mapper (epmap), allowing remote attackers to execute arbitrary code. This is achieved by sending a request with a small fragment length and a large amount of data.
Recommendations
For HP-UX 11, apply the necessary patch or update to fix the buffer overflow issue in the DCE daemon. As a temporary workaround, consider restricting access to the DCE endpoint mapper to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Hp-Ux