CVE-2012-3278
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
25/01/2013
Last modified:
11/04/2025
Description
Stack-based buffer overflow in magentservice.exe in HP Diagnostics Server 8.x through 8.07 and 9.x through 9.21 allows remote attackers to execute arbitrary code via a malformed message packet.
Impact
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:hp:diagnostics_server:8.00:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:8.01:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:8.02:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:8.03:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:8.04:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:8.05:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:8.06:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:8.07:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:9.00:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:9.01:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:9.02:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:9.10:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:9.12:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:9.20:*:*:*:*:*:*:* | ||
| cpe:2.3:a:hp:diagnostics_server:9.21:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://www.zerodayinitiative.com/advisories/ZDI-12-162/
- https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03645497
- https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03645497
- http://www.zerodayinitiative.com/advisories/ZDI-12-162/
- https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03645497
- https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03645497



