PT-2004-1796 · Hewlett Packard · Hp-Ux

Published

2004-07-27

·

Updated

2008-10-24

·

CVE-2004-0716

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HP-UX 11
Description A buffer overflow issue exists in the DCE daemon (DCED) for the DCE endpoint mapper (epmap), allowing remote attackers to execute arbitrary code. This is achieved by sending a request with a small fragment length and a large amount of data.
Recommendations For HP-UX 11, apply the necessary patch or update to fix the buffer overflow issue in the DCE daemon. As a temporary workaround, consider restricting access to the DCE endpoint mapper to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0716

Affected Products

Hp-Ux