First published: Sat Oct 06 2007(Updated: )
Unspecified vulnerability in (1) SYS$EI1000.EXE and (2) SYS$EI1000_MON.EXE in HP OpenVMS 8.3 and earlier allows remote attackers to cause a denial of service (machine crash) via an "oversize" packet, which is not properly discarded if "the device has no remaining buffers after receipt of the first buffer segment."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenVMS | <=8.3 | |
OpenVMS | <=8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5242 is classified as a denial of service vulnerability that can lead to a machine crash.
To mitigate CVE-2007-5242, ensure that your system is updated to a version of HP OpenVMS newer than 8.3.
CVE-2007-5242 affects HP OpenVMS version 8.3 and earlier for both Alpha and Integrity systems.
CVE-2007-5242 can be exploited by remote attackers sending oversize packets that the system cannot handle.
Yes, CVE-2007-5242 can be exploited by remote attackers without requiring authentication.