First published: Thu Jun 02 2011(Updated: )
Buffer overflow in HP LoadRunner allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a .usr (aka Virtual User script) file with long directives.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HP LoadRunner |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2328 has a critical severity rating due to potential remote code execution and denial of service.
To fix CVE-2011-2328, apply the latest security updates or patches provided by HP for LoadRunner.
The impacts of CVE-2011-2328 include a daemon crash and the risk of arbitrary code execution by attackers.
CVE-2011-2328 affects all versions of HP LoadRunner prior to the security patch release.
Yes, CVE-2011-2328 can be exploited remotely by attackers through specially crafted .usr files.