|
|
Credit:
The original article can be found at: http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02263226
|
|
Vulnerable Systems:
* HP-UX B.11.11 running BIND v9.3.2
* HP-UX B.11.11 running BIND v9.2.0
* HP-UX B.11.23 running BIND v9.3.2
* HP-UX B.11.23 running BIND v9.2.0
* HP-UX B.11.31 running BIND v9.3.2
* HP-UX B.11.31 running BIND v9.2.0
A potential security vulnerability has been identified with HP-UX running BIND. The vulnerability could be exploited remotely to create a Denial of Service (DoS) and permit unauthorized disclosure of information.
Patch Availability:
HP has provided the following software updates to resolve the vulnerability for BIND v9.2.0 and BIND v9.3.2:
The patch is available from
http://itrc.hp.com
Updates for all HP-UX 11i BIND v9.3.2 and B.11.23 BIND v9.2.0 are available from:
http://software.hp.com
BIND v9.2.0 for B.11.11 is available by contacting HP Support.
CVE Information:
CVE-2009-4022
CVE-2010-0290
CVE-2010-0382
Disclosure Timeline:
Release Date: 2010-09-15
Last Updated: 2010-09-15
|
|