Lucene search

K
certCERTVU:303012
HistoryFeb 26, 2007 - 12:00 a.m.

HP Mercury products vulnerable to buffer overflow

2007-02-2600:00:00
www.kb.cert.org
16

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.774

Percentile

98.2%

Overview

Some HP Mercury products are vulnerable to a buffer overflow and may allow an attacker to execute arbitrary code.

Description

The magentproc.exe service provided with some HP Mercury products fails to properly parse values in the server_ip_name field. If an overly long value is sent in this parameter, a stack-based buffer overflow may be triggered within the mchan.dll library. An attacker may be able to exploit this vulnerability by sending a specially crafted packet to the agent (port 54345/tcp). HP reports that the following products are affected by this issue:

* Mercury LoadRunner Agent 8.1 SP1, FP1, FP2, FP3, and FP4
* Mercury LoadRunner Agent 8.1 GA
* Mercury LoadRunner Agent 8.0 GA
* Mercury Performance Center Agent 8.1 FP1, FP2, FP3, and FP4
* Mercury Performance Center Agent 8.1 GA
* Mercury Performance Center Agent 8.0 GA
* Mercury Monitor over Firewall 8.1   

Impact

A remote, unauthenticated attacker may be able to execute arbitrary code.


Solution

Apply an Update
HP has issued an update to address this issue. please see HP Security Document ID #c00854250 for further information.


Vendor Information

303012

Filter by status: All Affected Not Affected Unknown

Filter by content: __ Additional information available

__ Sort by: Status Alphabetical

Expand all

Javascript is disabled. Click here to view vendors.

Hewlett-Packard Company __ Affected

Updated: February 26, 2007

Status

Affected

Vendor Statement

We have not received a statement from the vendor.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

Please see HP Security Document ID #c00854250 for further information.

If you have feedback, comments, or additional information about this vulnerability, please send us [email](<mailto:[email protected]?Subject=VU%23303012 Feedback>).

CVSS Metrics

Group Score Vector
Base
Temporal
Environmental

References

Acknowledgements

This vulnerability was reported in HP Security Document ID #c00854250. This issue was discovered by Eric Detoisien and reported via Zero Day Initiative.

This document was written by Katie Steiner.

Other Information

CVE IDs: CVE-2007-0446
Severity Metric: 10.31 Date Public:

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.774

Percentile

98.2%