Moderate flaw found in HP Diagnostics

A moderately critical flaw was found in HP Diagnostic. The vulnerability is due to a boundary error in magentservice.exe error when processing certain requests. It can be exploited via crafted request sent to TCP port 23472 to cause buffer overflow.
The vulnerability was found in version 9.00. Other version can be vulnerable also. HP Diagnostic users should restric access to trusted hosts only.


Source: Secunia
17.01.2012