HP.StorageWorks.Storage.Mirroring.Auto

NameHP.StorageWorks.Storage.Mirroring.Auto.Discovery.Heap.Overflow
Release DateApr 21, 2009
SeverityCritical
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems.
DescriptionThis indicates a possible exploit of a heap-overflow vulnerability in the Auto-Discovery Module in HP StorageWorks Storage Mirroring. A remote attacker may exploit this to obtain unauthorized access.
Affected ProductsHP StorageWorks Storage Mirroring v5 prior to v5.1.1.1090.15.
Recommended ActionsRefer to the vendor's web site for the suggested workaround:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01707538
Common Vulnerabilities and Exposures (CVE)http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0716
Reference/shttp://www.securityfocus.com/bid/34611 (BugTraq)
Reference: VID-17350