Overview
The LANDesk Management Suite Intel QIP service contains a buffer overflow vulnerability.
Description
The LANDesk Intel QIP Server Service is used to configure policy management. The Intel QIP service allows LANDesk Agents to report status and make certain software requests. A buffer overflow vulnerability exists in the Intel QIP service (Qipsrvr.exe). |
Impact
A remote, unauthenticated attacker may be able to execute code with system privileges. |
Solution
Upgrade |
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
Acknowledgements
Thanks to LANDesk for technical information that was used in this document. This issue was reported to LANDesk by TippingPoint DVLabs.
This document was written by Ryan Giobbi.
Other Information
CVE IDs: | CVE-2008-2468 |
Severity Metric: | 3.21 |
Date Public: | 2008-09-12 |
Date First Published: | 2008-09-17 |
Date Last Updated: | 2008-09-17 14:21 UTC |
Document Revision: | 11 |