RULE(RULE ID:711180)

Rule General Information
Release Date: 2019-08-13
Rule Name: HPE LoadRunner and Performance Center libxdrutil.dll mxdr_string Heap Buffer Overflow Vulnerability (CVE-2017-5789)
Severity:
CVE ID:
Rule Protection Details
Description: HPE LoadRunner before 12.53 Patch 4 and HPE Performance Center before 12.53 Patch 4 allow remote attackers to execute arbitrary code via unspecified vectors. At least in LoadRunner, this is a libxdrutil.dll mxdr_string heap-based buffer overflow.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks includes arbitrary code execution and denial of service.
Affected OS: Windows, Others
Reference: SecurityFocusBID:101224
SecurityTrackerID:1038028
SecurityFocusBID:96774
SecurityTrackerID:1038029
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://www.jantek.com