CVE-2011-1854: Use After Free
Published May 13, 2011
·Updated
Use-after-free vulnerability in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allows remote attackers to execute arbitrary code via a long syslog packet, related to an exception handler.
Affected Software
3 affected components
HP intelligent Management Center=5.0-e0101
HP intelligent Management Center=5.0
HP intelligent Management Center=5.0-e0101l01
Remediation
Event History
May 13, 2011
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-1854?
CVE-2011-1854 is classified as a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2011-1854?
To fix CVE-2011-1854, update HP Intelligent Management Center to a version that includes the security patch addressing this vulnerability.
3
What is the impact of CVE-2011-1854?
The impact of CVE-2011-1854 is that it allows remote attackers to execute arbitrary code on the affected server.
4
Which versions of HP Intelligent Management Center are affected by CVE-2011-1854?
CVE-2011-1854 affects HP Intelligent Management Center version 5.0 prior to E0101L02.
5
Is CVE-2011-1854 a local or remote exploit?
CVE-2011-1854 is a remote exploit, meaning that attackers can trigger it from outside the target network.