|
|
| |
Credit:
The original article can be found at: http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02002298
|
| |
Vulnerable Systems:
* HP Operations Agent 8.51 running on Solaris 10 (sparc/x86/x64)
* HP Operations Agent 8.52 running on Solaris 10 (sparc/x86/x64)
* HP Operations Agent 8.53 running on Solaris 10 (sparc/x86/x64)
* HP Operations Agent 8.60 running on Solaris 10 (sparc/x86/x64)
A potential vulnerability has been identified with HP Operations Agent running on Solaris 10. The vulnerability could be exploited remotely to gain unauthorized access.
Workaround:
The vulnerability can be resolved by the following procedure.
1. Run the following command to identify a vulnerable configuration:
/usr/bin/passwd -s opc_op
A vulnerable configuration will return this:
opc_op NP
2. If the configuration is vulnerable run the following command:
/usr/bin/passwd -N opc_op
3. The command in step 1 should now return this:
opc_op NL
CVE Information:
CVE-2010-0444
Disclosure Timeline:
Release Date: 2010-02-08
|
|
|