Vulnerability Description
SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to cause a denial of service (crash) via a 0x53 LPD command, which causes the server to terminate.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sap | Sapgui | 7.10 |
| Sap | Saplpd | <= 6.28 |
| Sap | Sapsprint | All versions |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/28786Vendor Advisory
- http://secunia.com/advisories/28811
- http://securityreason.com/securityalert/3619
- http://www.securityfocus.com/archive/1/487508/100/0/threaded
- http://www.securityfocus.com/archive/1/487575/100/0/threaded
- http://www.securityfocus.com/bid/27613Exploit
- http://www.securitytracker.com/id?1019300
- http://www.vupen.com/english/advisories/2008/0409
- http://www.vupen.com/english/advisories/2008/0438
- http://secunia.com/advisories/28786Vendor Advisory
- http://secunia.com/advisories/28811
- http://securityreason.com/securityalert/3619
- http://www.securityfocus.com/archive/1/487508/100/0/threaded
- http://www.securityfocus.com/archive/1/487575/100/0/threaded
- http://www.securityfocus.com/bid/27613Exploit
FAQ
What is CVE-2008-0620?
CVE-2008-0620 is a vulnerability with a CVSS score of 10.0 (HIGH). SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to cause a denial of service (crash) via a 0x53 LPD command, which causes the server to terminate.
How severe is CVE-2008-0620?
CVE-2008-0620 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-0620?
Check the references section above for vendor advisories and patch information. Affected products include: Sap Sapgui, Sap Saplpd, Sap Sapsprint.