|
|
|
|
| |
Credit:
The information has been provided by HP Software Security Response Team.
|
| |
Vulnerable Systems:
* HP ProLiant DL120 G5 Server series
HP ProLiant DL160 G5 Server series
HP ProLiant DL160 G6 Server series
HP ProLiant DL160 G5p Server series
HP ProLiant DL165 G6 Server series
HP ProLiant DL180 G5 Server series
HP ProLiant DL180 G6 Server series
HP ProLiant DL185 G5 Server series
HP ProLiant ML110 G5 Server series
HP ProLiant ML115 G5 Server series
HP ProLiant ML150 G5 Server series
The vulnerability could be exploited remotely to create a Denial of Service (DoS). The HP ProLiant Onboard Administrator Powered by LO100i was formerly known as HP Lights Out 100.
HP has made the following firmware upgrades available to resolve the vulnerability. These upgrades are available on http://welcome.hp.com/country/us/en/support.html?pageDisplay=drivers
ProLiant Server
Vulnerable Lights-Out 100 Remote Management Firmware Version Resolution Version
HP ProLiant DL120 G5 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v3.11 or later
HP ProLiant DL160 G5 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 3.11 or later
HP ProLiant DL160 G6 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 4.04 or later
HP ProLiant DL160 G5p Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 3.11 or later
HP ProLiant DL165 G6 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 4.04 or later
HP ProLiant DL180 G5 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 3.11 or later
HP ProLiant DL180 G6 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 4.04 or later
HP ProLiant DL185 G5 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 3.11 or later
HP ProLiant ML110 G5 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 3.11 or later
HP ProLiant ML115 G5 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 3.11 or later
HP ProLiant ML150 G5 Server series
Vulnerable Firmware Version - v3.07 or earlier Resolved in - v 3.11 or later
Download and Installation Instructions
ProLiant DL/ML 100 G5-Series
The Lights-Out 100 Remote Management Firmware Upgrade v3.11 or later is available for download. Obtain the Firmware Upgrade for the HP ProLiant DL/ML100 series Lights-Out 100 Remote Management Firmware v3.11 or later as
follows:
Click on the following URL and then follow the instructions below:
http://welcome.hp.com/country/us/en/support.html?pageDisplay=drivers
1. Under Select a product category, select Servers.
2. Select ProLiant/tc Series Servers.
3. Select the appropriate ProLiant DL/ML100 series G5 server.
4. Select the appropriate operating system.
5. Select Firmware - Management.
6. Select the Firmware upgrade for the appropriate HP ProLiant DL/ML100 G5-Series servers; Lights-Out 100 Remote Management Firmware v3.11 or later.
Note: The Lights-Out 100 Remote Management Firmware Upgrade v3.11 or later supersedes the following single point firmware solutions for the ProLiant 100 series G5 servers:
SP43615.EXE - Single Point Solution System ROMPaq Firmware Upgrade for HP ProLiant ML110 G5/ML150 G5/DL180 G5/DL120 G5 Remote Management v3.10A.
SP43614.EXE - Single Point Solution System ROMPaq Firmware Upgrade for HP ProLiant DL160 G5/DL185 G5 Lights-Out 100 Remote Management v3.10A
ProLiant DL/ML 100 G6-Series
The Lights-Out 100 Remote Management Firmware Upgrade v4.04 or later is available for download. Obtain the Firmware Upgrade for the HP ProLiant DL/ML100 series Lights-Out 100 Remote Management Firmware v4.04 or later as
follows:
Click on the following URL and then follow the instructions below:
http://welcome.hp.com/country/us/en/support.html?pageDisplay=drivers
1. Under Select a product category, select Servers.
2. Select ProLiant/tc Series Servers.
3. Select the appropriate ProLiant DL/ML100 series G6 server.
4. Select the appropriate operating system.
5. Select Firmware - Management.
6. Select the Firmware upgrade for the appropriate HP ProLiant DL/ML100 G6-Series servers; Lights-Out 100 Remote Management Firmware v4.04 or later.
CVE Information:
CVE-2009-1426
|
|
|
|
|