First published: Wed Feb 26 2014(Updated: )
Unspecified vulnerability in dbd_manager in LeftHand OS before 11.0 in HP StoreVirtual 4000 and StoreVirtual VSA Software (formerly LeftHand Virtual SAN Appliance) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1509.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP LeftHand | <=10.5 | |
HP LeftHand | =8.1 | |
HP LeftHand | =8.5 | |
HP LeftHand | =9.0 | |
HP LeftHand | =9.5 | |
HP LeftHand | =10 | |
HP StoreVirtual Virtual Storage Appliance | ||
HP StoreVirtual Virtual Storage Appliance |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4841 has a critical severity rating due to its potential to allow remote code execution.
To fix CVE-2013-4841, upgrade to a version of HP LeftHand OS that is 11.0 or later.
CVE-2013-4841 affects HP LeftHand OS versions before 11.0 and HP StoreVirtual 4000 and StoreVirtual VSA Software.
Yes, CVE-2013-4841 can be exploited by remote attackers via unknown vectors.
There are no known workarounds for CVE-2013-4841; the only recommendation is to upgrade the affected software.