RULE(RULE ID:712894)

Rule General Information
Release Date: 2019-07-02
Rule Name: HP OpenView Data Protector Application Recovery Manager Stack Buffer Overflow Vulnerability (CVE-2009-3844)
Severity:
CVE ID:
Rule Protection Details
Description: Stack-based buffer overflow in the OmniInet process in HP OpenView Data Protector Application Recovery Manager 5.50 and 6.0 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted MSG_PROTOCOL packet.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks includes arbitrary code execution and denial of service.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:37250
http://marc.info/?l=bugtraq&m=126029001704529&w=2
SecurityTrackerID:1023288
http://www.securityfocus.com/archive/1/508329/100/0/threaded
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01943909