First published: Wed Feb 01 2017(Updated: )
SAPlpd through 7400.3.11.33 in SAP GUI 7.40 on Windows has a Denial of Service vulnerability (service crash) with a long string to TCP port 515.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP SAPLPD | <=7400.3.11.33 | |
<=7400.3.11.33 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-10079 is classified as a Denial of Service vulnerability which can cause a service crash.
To fix CVE-2016-10079, upgrade to a version of SAP LPD higher than 7400.3.11.33.
CVE-2016-10079 affects SAP LPd versions up to and including 7400.3.11.33 on Windows.
An attacker can exploit CVE-2016-10079 to send a long string to TCP port 515, resulting in a Denial of Service.
CVE-2016-10079 can be easily exploited by sending a specially crafted long string to the vulnerable service.