Vulnerability Report

CVE-2012-3418

Title: Sgi Performance Co-Pilot RCE

Memory Corruption

Proof Of Concept

No public PoC currently indexed for CVE-2012-3418.

CWE Category CWE-189
Published Date Aug 27, 2012
Modified Date Apr 29, 2026
Exploit Status Not Found
Score 5.0 CVSS v2.0
Exploit Probability (EPSS)
3.58%

Vulnerability Summary

CVE-2012-3418: libpcp in Performance Co-Pilot (PCP) before 3.6.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a PDU with the numcreds field value greater than the number of actual elements to the __pmDecodeCreds function in p_creds.c; (2) the string byte number value to the __pmDecodeNameList function in p_pmns.c; (3) the numids value to the __pmDecodeIDList function in p_pmns.c; (4) unspecified vectors to the __pmDecodeProfile function in p_profile.c; the (5) status number value or (6) string number value to the __pmDecodeNameList function in p_pmns.c; (7) certain input to the __pmDecodeResult function in p_result.c; (8) the name length field (namelen) to the DecodeNameReq function in p_pmns.c; (9) a crafted PDU_FETCH request to the __pmDecodeFetch function in p_fetch.c; (10) the namelen field in the __pmDecodeInstanceReq function in p_instance.c; (11) the buflen field to the __pmDecodeText function in p_text.c; (12) PDU_INSTANCE packets to the __pmDecodeInstance in p_instance.c; or the (13) c_numpmid or (14) v_numval fields to the __pmDecodeLogControl function in p_lcontrol.c, which triggers integer overflows, heap-based buffer overflows, and/or buffer over-reads.

Impacted Vendors

Reference Links

http://lists.fedoraproject.org/pipermail/package-announce/2012-August/085324.html http://lists.fedoraproject.org/pipermail/package-announce/2012-August/085333.html http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00024.html http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=blob%3Bf=CHANGELOG%3Bh=16c9cbb2f61d909487ea1c3171f4ab33e5648ac5%3Bhb=fe51067ae869a4d59f350ac319b09edcb77ac8e6 http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commit%3Bh=b441980d53be1835b25f0cd6bcc0062da82032dd http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commit%3Bh=babd6c5c527f87ec838c13a1b4eba612af6ea27c http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commit%3Bh=e4faa1f0ba29151340920d975fc7639adf8371d5 http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commit%3Bh=f190942b552aa80d59bbe718866aa00b8e3fd5cc http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=49c679c44425915a8d6aa4af5f90b35384843c12 http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=7eb479b91ef12bf89a15b078af2107c8c4746a4a http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=9f4e392c97ce42744ec73f82268ce6c815fdca0e http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=bfb3ab8c6b3d75b1a6580feee76a7d0925a3633c http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=cced6012b4b93bfb640a9678589ced5416743910 http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=f0eaefe046b1061797f45b0c20bb2ac371b504a5 http://www.debian.org/security/2012/dsa-2533 http://www.openwall.com/lists/oss-security/2012/08/16/1 https://bugzilla.redhat.com/show_bug.cgi?id=840822 https://bugzilla.redhat.com/show_bug.cgi?id=840920 https://bugzilla.redhat.com/show_bug.cgi?id=841112 https://bugzilla.redhat.com/show_bug.cgi?id=841126 https://bugzilla.redhat.com/show_bug.cgi?id=841159 https://bugzilla.redhat.com/show_bug.cgi?id=841180 https://bugzilla.redhat.com/show_bug.cgi?id=841183 https://bugzilla.redhat.com/show_bug.cgi?id=841240 https://bugzilla.redhat.com/show_bug.cgi?id=841249 https://bugzilla.redhat.com/show_bug.cgi?id=841284 https://bugzilla.redhat.com/show_bug.cgi?id=841698 https://hermes.opensuse.org/messages/15471040 https://hermes.opensuse.org/messages/15540133 https://hermes.opensuse.org/messages/15540172 http://lists.fedoraproject.org/pipermail/package-announce/2012-August/085324.html http://lists.fedoraproject.org/pipermail/package-announce/2012-August/085333.html http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00024.html http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=blob%3Bf=CHANGELOG%3Bh=16c9cbb2f61d909487ea1c3171f4ab33e5648ac5%3Bhb=fe51067ae869a4d59f350ac319b09edcb77ac8e6 http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commit%3Bh=b441980d53be1835b25f0cd6bcc0062da82032dd http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commit%3Bh=babd6c5c527f87ec838c13a1b4eba612af6ea27c http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commit%3Bh=e4faa1f0ba29151340920d975fc7639adf8371d5 http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commit%3Bh=f190942b552aa80d59bbe718866aa00b8e3fd5cc http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=49c679c44425915a8d6aa4af5f90b35384843c12 http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=7eb479b91ef12bf89a15b078af2107c8c4746a4a http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=9f4e392c97ce42744ec73f82268ce6c815fdca0e http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=bfb3ab8c6b3d75b1a6580feee76a7d0925a3633c http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=cced6012b4b93bfb640a9678589ced5416743910 http://oss.sgi.com/cgi-bin/gitweb.cgi?p=pcp/pcp.git%3Ba=commitdiff%3Bh=f0eaefe046b1061797f45b0c20bb2ac371b504a5 http://www.debian.org/security/2012/dsa-2533 http://www.openwall.com/lists/oss-security/2012/08/16/1 https://bugzilla.redhat.com/show_bug.cgi?id=840822 https://bugzilla.redhat.com/show_bug.cgi?id=840920 https://bugzilla.redhat.com/show_bug.cgi?id=841112 https://bugzilla.redhat.com/show_bug.cgi?id=841126 https://bugzilla.redhat.com/show_bug.cgi?id=841159 https://bugzilla.redhat.com/show_bug.cgi?id=841180 https://bugzilla.redhat.com/show_bug.cgi?id=841183 https://bugzilla.redhat.com/show_bug.cgi?id=841240 https://bugzilla.redhat.com/show_bug.cgi?id=841249 https://bugzilla.redhat.com/show_bug.cgi?id=841284 https://bugzilla.redhat.com/show_bug.cgi?id=841698 https://hermes.opensuse.org/messages/15471040 https://hermes.opensuse.org/messages/15540133 https://hermes.opensuse.org/messages/15540172
CVSS v2.0
Source Entity [email protected]
Severity MEDIUM
5.0
Access Vector
N/A
Authentication
N/A
RAW VECTOR AV:N/AC:L/Au:N/C:N/I:N/A:P

Associated Attack Patterns (CAPEC)

Total: Patterns

CVE-2012-3418 Exploits & PoCs (Proof Of Concept)

No public PoCs found in our database for this CVE.

MODIFIED

Vulnerability data updated via NVD.

MODIFIED

Vulnerability data or affected products updated.

PUBLISHED

Vulnerability first announced in NVD.

Attack Vector Matrix

Access Vector N/A
Complexity N/A
Privileges N/A
Interaction NONE
CVSS Vector String AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected Stack

No specific products linked.