HP-UX ndd Denial of Service Vulnerability
BID:4680
Info
HP-UX ndd Denial of Service Vulnerability
| Bugtraq ID: | 4680 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2002-0585 |
| Remote: | No |
| Local: | Yes |
| Published: | May 06 2002 12:00AM |
| Updated: | Jul 11 2009 12:46PM |
| Credit: | Published in HP Security Bulletin HPSBUX0205-192. |
| Vulnerable: |
HP HP-UX 11.11 |
| Not Vulnerable: | |
Discussion
HP-UX ndd Denial of Service Vulnerability
HP-UX 11 includes the ndd command, which may be used to control a number of network parameters. A vulnerability has been reported in the ndd binary included with some versions of HP-UX which may cause a denial of service condition.
Reportedly, HP-UX 11.11 is vulnerable only when TRANSPORT patches PHNE_24211, PHNE_24506, PHNE_25134, or PHNE_25642 have been installed.
HP-UX 11 includes the ndd command, which may be used to control a number of network parameters. A vulnerability has been reported in the ndd binary included with some versions of HP-UX which may cause a denial of service condition.
Reportedly, HP-UX 11.11 is vulnerable only when TRANSPORT patches PHNE_24211, PHNE_24506, PHNE_25134, or PHNE_25642 have been installed.
Exploit / POC
HP-UX ndd Denial of Service Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
HP-UX ndd Denial of Service Vulnerability
Solution:
A patch is available:
HP HP-UX 11.11
Solution:
A patch is available:
HP HP-UX 11.11
-
HP PHNE_25644
http://itrc.hp.com