Advisory Details

December 17th, 2007

Hewlett-Packard HP-UX swagentd Buffer Overflow Vulnerability

ZDI-07-079
ZDI-CAN-201

CVE ID CVE-2007-6195
CVSS SCORE
AFFECTED VENDORS Hewlett-Packard
AFFECTED PRODUCTS HP-UX
VULNERABILITY DETAILS

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Hewlett-Packard HP-UX operating system. Authentication is not required to exploit this vulnerability.

The specific flaw exists within the function sw_rpc_agent_init (opcode 0x04) defined in swagentd. Specific malformed arguments can cause function pointers to be overwritten and thereby result in arbitrary code execution.

ADDITIONAL DETAILS

Hewlett-Packard has issued an update to correct this vulnerability. More details can be found in HP document ID #SB2294r1.


DISCLOSURE TIMELINE
  • 2007-07-20 - Vulnerability reported to vendor
  • 2007-12-17 - Coordinated public release of advisory
CREDIT Tenable Network Security
BACK TO ADVISORIES