First published: Sat Dec 15 2007(Updated: )
Buffer overflow in the sw_rpc_agent_init function in swagentd in Software Distributor (SD), and possibly other DCE applications, in HP HP-UX B.11.11 and B.11.23 allows remote attackers to execute arbitrary code or cause a denial of service via malformed arguments in an opcode 0x04 DCE RPC request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HPE HP-UX | =11.11 | |
HPE HP-UX | =11.23 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-6195 is considered high due to the potential for remote code execution and denial of service.
To fix CVE-2007-6195, apply the relevant patches provided by HP for HP-UX versions 11.11 and 11.23.
CVE-2007-6195 affects users of HP-UX versions 11.11 and 11.23 running the swagentd component.
CVE-2007-6195 is classified as a buffer overflow vulnerability in the sw_rpc_agent_init function.
Yes, CVE-2007-6195 can be exploited remotely via malformed DCE RPC requests.