First published: Mon Aug 31 2009(Updated: )
osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to cause a denial of service (crash) via a crafted packet with a large string length value to UDP port 14000, which triggers a memory allocation failure that is not properly handled.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microfocus Visibroker | <=08.00.00.c1.03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-7127 is classified as a denial of service vulnerability.
To fix CVE-2008-7127, update to a version of Borland VisiBroker that is later than 08.00.00.C1.03.
CVE-2008-7127 may lead to unexpected crashes of the osagent.exe process, resulting in service downtime.
CVE-2008-7127 impacts Borland VisiBroker versions up to and including 08.00.00.C1.03.
Yes, CVE-2008-7127 can be exploited remotely through crafted packets sent to UDP port 14000.