HP Data Protector CVE-2013-2330 Remote Code Execution Vulnerability
BID:60306
Info
HP Data Protector CVE-2013-2330 Remote Code Execution Vulnerability
| Bugtraq ID: | 60306 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2013-2330 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 04 2013 12:00AM |
| Updated: | Jun 12 2013 09:26AM |
| Credit: | HP |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
HP Data Protector CVE-2013-2330 Remote Code Execution Vulnerability
HP Data Protector is prone to a remote code-execution vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
Successfully exploiting this issue may allow an attacker to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts may result in a denial-of-service condition.
HP Data Protector is prone to a remote code-execution vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
Successfully exploiting this issue may allow an attacker to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts may result in a denial-of-service condition.
Exploit / POC
HP Data Protector CVE-2013-2330 Remote Code Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
HP Data Protector CVE-2013-2330 Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
HP Data Protector CVE-2013-2330 Remote Code Execution Vulnerability
References:
References: