Short Name |
APP:HPOV:OVALARMSRV-OF |
---|---|
Severity |
Major |
Recommended |
No |
Category |
APP |
Keywords |
Hewlett-Packard OpenView Alarm Service Overflow |
Release Date |
2008/04/21 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability in the Hewlett-Packard OpenView Alarm Service. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the server.
HP OpenView Network Node Manager is prone to multiple vulnerabilities affecting the 'ovalarmsrv.exe' process. These issues include a format-string vulnerability, multiple buffer-overflow vulnerabilities, and a denial-of-service vulnerability. Attackers can exploit these issues to execute arbitrary code with the privileges of the affected application or to consume excessive system resources. Successful exploits will compromise affected computers or cause denial-of-service conditions. HP OpenView Network Node Manager 7.50 is vulnerable; the denial-of-service issue also affects version 7.53; other versions may also be affected.