// For flags

CVE-2009-0418

 

Severity Score

9.1
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The IPv6 Neighbor Discovery Protocol (NDP) implementation in HP HP-UX B.11.11, B.11.23, and B.11.31 does not validate the origin of Neighbor Discovery messages, which allows remote attackers to cause a denial of service (loss of connectivity), read private network traffic, and possibly execute arbitrary code via a spoofed message that modifies the Forward Information Base (FIB), a related issue to CVE-2008-2476.

La implementación IPv6 Neighbor Discovery Protocol (NDP) en HP HP-UX B.11.11, B.11.23 y B.11.31, no valida el origen de los mensajes Neighbor Discovery -Descubrimiento de Vecinos-, esto permite a atacantes remotos provocar una denegación de servicio (pérdida de conectividad), leer el tráfico privado de redes y puede que ejecutar código de su elección a través de un mensaje falso que modifica el FIB (Forward Information Base). Está relacionado con la vulnerabilidad CVE-2008-2476.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2009-02-04 CVE Reserved
  • 2009-02-04 CVE Published
  • 2024-08-07 CVE Updated
  • 2025-06-26 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Hp
Search vendor "Hp"
Hp-ux
Search vendor "Hp" for product "Hp-ux"
b.11.11
Search vendor "Hp" for product "Hp-ux" and version "b.11.11"
-
Affected
Hp
Search vendor "Hp"
Hp-ux
Search vendor "Hp" for product "Hp-ux"
b.11.23
Search vendor "Hp" for product "Hp-ux" and version "b.11.23"
-
Affected
Hp
Search vendor "Hp"
Hp-ux
Search vendor "Hp" for product "Hp-ux"
b.11.31
Search vendor "Hp" for product "Hp-ux" and version "b.11.31"
-
Affected