Products
White Papers
Data Sheets
Case Studies
Support Login
Locate a Partner
iPolicy Networks Security Advisory
 

HP-UX rpc.yppasswd Unspecified Denial Of Service Vulnerability

Date Discovered: 12/20/2007
Severity: High
Applications Affected: HP-UX B.11.31
HP-UX B.11.23
HP-UX B.11.11
Synopsis
HP-UX rpc.yppasswd is prone to a remote denial of service vulnerability. The vulnerability is caused due to an unspecified error and can be exploited to crash the rpc.yppasswdd process.
Recommended Actions
Update the patches as guided by vendor at :
http://itrc.hp.com
Threat Analysis
A vulnerability has been disclosed in HP-UX, which can be exploited by malicious people to cause a Denial of Service.

The vulnerability is caused due to an unspecified error and can be exploited to crash the rpc.yppasswdd process. Exploiting this issue allows remote attackers to trigger denial-of-service conditions, denying further service to legitimate users.
References

http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6419
http://www.securityfocus.com/bid/26971/info

Write-up by: Aditya Chaturvedi
Security Sites
 
“iPolicy is one of the most visionary firewall vendors in the firewall Magic Quadrant. Its architecture of a central session processing engine and multiple content blades that are able to block based on signatures, rules and so on is the closest to the network security ideal.”
 
Greg Young, John Pescatore
Magic Quadrant for Network Firewalls, 2H04, Gartner
 

 

Home | About Us | Products | Technology | Solutions | Support | Partners | News & Events | Resources | Contact Us
Copyright ©2008 iPolicy Networks - Security Product Division of Tech Mahindra Limited | Privacy Policy | Site Map