First published: Thu Dec 10 2009(Updated: )
Stack-based buffer overflow in ovalarm.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long HTTP Accept-Language header in an OVABverbose action.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.0.1 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.0.1 | |
HP OpenView Network Node Manager | =7.0.1 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.51 | |
HP OpenView Network Node Manager | =7.53 | |
HP OpenView Network Node Manager | =7.0.1 | |
HP OpenView Network Node Manager | =7.51 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4179 is classified as a high severity vulnerability due to its potential for remote code execution.
To fix CVE-2009-4179, update to the latest version of HP OpenView Network Node Manager that addresses this vulnerability.
CVE-2009-4179 affects HP OpenView Network Node Manager versions 7.01, 7.51, and 7.53.
Yes, CVE-2009-4179 can be exploited remotely through a maliciously crafted HTTP Accept-Language header.
CVE-2009-4179 is associated with a stack-based buffer overflow attack allowing attackers to execute arbitrary code.