HP OpenView Network Node Manager rping Stack Buffer Overflow

  Severity: CRITICAL
  CVE Identifier: CVE-2009-1420

  DESCRIPTION

Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when used with SNMP (aka HPOvNNM.HPOVSNMP) before 1.30.009 and MIB (aka HPOvNNM.HPOVMIB) before 1.30.009, allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1003602
  Trend Micro Deep Security DPI Rule Name: 1003602 - HP OpenView Network Node Manager rping Stack Buffer Overflow

  AFFECTED SOFTWARE AND VERSION

  • hp openview_network_node_manager 7.51
  • hp openview_network_node_manager 7.53