CVE-2002-2138: Medium severity HPE HP-UX vulnerability
Published Dec 31, 2002
·Updated
RFC-NETBIOS in HP Advanced Server/9000 B.04.05 through B.04.09, when running HP-UX 11.00 or 11.11, allows remote attackers to cause a denial of service (panic) via a malformed UDP packet on port 139.
Affected Software
8 affected components
HPE HP-UX=11.11
HPE HP-UX=11.4
HPE HP-UX=11.00
HP Advanced Server 9000=b.04.09
HP Advanced Server 9000=b.04.08
HP Advanced Server 9000=b.04.07
HP Advanced Server 9000=b.04.06
HP Advanced Server 9000=b.04.05
Remediation
Patch Available
Patch Available
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Nov 17, 2005
CVE Published
via MITRE·02:17 AM
Data Sourced
via MITRE·02:17 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2138?
CVE-2002-2138 has a severity rating that indicates it can lead to a denial of service condition.
2
How do I fix CVE-2002-2138?
To mitigate CVE-2002-2138, it is recommended to apply the latest security patches for HP-UX and HP Advanced Server software.
3
What systems are affected by CVE-2002-2138?
CVE-2002-2138 affects HP-UX versions 11.00 and 11.11, as well as various versions of HP Advanced Server 9000.
4
What type of attack does CVE-2002-2138 exploit?
CVE-2002-2138 exploits a vulnerability that allows attackers to send a malformed UDP packet to cause a system panic.
5
Can CVE-2002-2138 be exploited remotely?
Yes, CVE-2002-2138 can be exploited remotely by sending crafted UDP packets to port 139.