CVE-2008-7127: Medium severity micro focus visibroker vulnerability
Published Aug 31, 2009
·Updated
osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to cause a denial of service (crash) via a crafted packet with a large string length value to UDP port 14000, which triggers a memory allocation failure that is not properly handled.
Affected Software
1 affected component
MicroFocus Visibroker<=08.00.00.c1.03
Event History
Aug 31, 2009
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-7127?
CVE-2008-7127 is classified as a denial of service vulnerability.
2
How do I fix CVE-2008-7127?
To fix CVE-2008-7127, update to a version of Borland VisiBroker that is later than 08.00.00.C1.03.
3
What is the impact of CVE-2008-7127 on systems?
CVE-2008-7127 may lead to unexpected crashes of the osagent.exe process, resulting in service downtime.
4
Which products are affected by CVE-2008-7127?
CVE-2008-7127 impacts Borland VisiBroker versions up to and including 08.00.00.C1.03.
5
Can CVE-2008-7127 be exploited remotely?
Yes, CVE-2008-7127 can be exploited remotely through crafted packets sent to UDP port 14000.