First published: Sat Oct 06 2007(Updated: )
Buffer overflow in NET$CSMACD.EXE in HP OpenVMS 8.3 and earlier allows local users to cause a denial of service (machine crash) via the "MCR MCL SHOW CSMA-CD Port * All" command, which overwrites a Non-Paged Pool Packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenVMS | <=8.3 | |
OpenVMS | <=8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5241 is classified as a high severity vulnerability due to its potential to cause a denial of service by crashing the affected system.
To mitigate CVE-2007-5241, upgrade to a version of HP OpenVMS later than 8.3 that does not contain this buffer overflow vulnerability.
CVE-2007-5241 affects local users of HP OpenVMS 8.3 and earlier versions on Alpha and Integrity platforms.
The vulnerability can be exploited by executing the command "MCR MCL SHOW CSMA-CD Port * All" which triggers the buffer overflow.
Exploitation of CVE-2007-5241 can lead to a machine crash, resulting in a denial of service for users of the affected systems.