Compaq Nonstop Himalaya SNMP Agent Denial Of Service Vulnerability
BID:4137
Info
Compaq Nonstop Himalaya SNMP Agent Denial Of Service Vulnerability
| Bugtraq ID: | 4137 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 20 2002 12:00AM |
| Updated: | Feb 20 2002 12:00AM |
| Credit: | This vulnerability was announced in a Compaq Security Advisory on February 18, 2002. |
| Vulnerable: |
Compaq Nonstop Kernel S-Series 3.0 |
| Not Vulnerable: | |
Discussion
Compaq Nonstop Himalaya SNMP Agent Denial Of Service Vulnerability
Nonstop Himalaya Servers are an integrated hardware and software solution. Nonstop Himalaya Servers are distributed by Compaq.
Nonstop Himalaya Servers have been discovered to be vulnerable to the problems described in Bugtraq ID 4088 "Multiple Vendor SNMP Trap Handling Vulnerabilities" and 4089 "Multiple Vendor SNMP Request Handling Vulnerabilities." Himalaya Servers are vulnerable to a buffer overflow in the SNMP agent. However, the design of the Compaq Nonstop Kernel prevents the execution of arbitrary code on the stack. An attempt to execute a buffer overflow against a vulnerable SNMP agent will cause an Abnormal End of Operation (ABEND).
Nonstop Himalaya Servers are an integrated hardware and software solution. Nonstop Himalaya Servers are distributed by Compaq.
Nonstop Himalaya Servers have been discovered to be vulnerable to the problems described in Bugtraq ID 4088 "Multiple Vendor SNMP Trap Handling Vulnerabilities" and 4089 "Multiple Vendor SNMP Request Handling Vulnerabilities." Himalaya Servers are vulnerable to a buffer overflow in the SNMP agent. However, the design of the Compaq Nonstop Kernel prevents the execution of arbitrary code on the stack. An attempt to execute a buffer overflow against a vulnerable SNMP agent will cause an Abnormal End of Operation (ABEND).
Exploit / POC
Compaq Nonstop Himalaya SNMP Agent Denial Of Service Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Compaq Nonstop Himalaya SNMP Agent Denial Of Service Vulnerability
References:
References: