HP OpenView Radia 2.0/3.1/4.0 - Notify Daemon Multiple Remote Buffer Overflow Vulnerabilities
Author: John Cartwright
type: dos
platform: windows
port:
date_added: 2005-06-01
date_updated: 2013-05-28
verified: 1
codes:
tags:
aliases:
screenshot_url:
application_url:
raw file: 25782.txt
source: https://www.securityfocus.com/bid/13835/info
HP OpenView Radia Notify Daemon (RADEXECD) is affected by multiple remote buffer overflow vulnerabilities.
An attacker can craft a malicious request that can overflow a buffer and result in process memory corruption. These issues may be exploited to gain unauthorized access in the context of the server.
The following proof of concept is available:
<callback port>\0<username>\0<password>\0
"LIST " . (0x90 x <offset>) . <ret_addr> . "." . <shellcode>