|
|
| |
Credit:
The original article can be found at: http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02737002
|
| |
Vulnerable Systems:
* HP-UX B.11.11 running OpenSSL before vA.00.09.08q
* HP-UX B.11.23 running OpenSSL before vA.00.09.08q
* HP-UX B.11.31 running OpenSSL before vA.00.09.08q
Immune Systems:
* HP-UX B.11.11 running OpenSSL vA.00.09.08q or subsequent
* HP-UX B.11.23 running OpenSSL vA.00.09.08q or subsequent
* HP-UX B.11.31 running OpenSSL vA.00.09.08q or subsequent
This vulnerability could be exploited remotely to execute arbitrary code or create a Denial of Service (DoS) or an authentication bypass.
Patch Availability:
HP has provided upgrades to resolve this vulnerability. The upgrades are available from the following location:
http://software.hp.com
CVE Information:
CVE-2010-3864
CVE-2010-4180
CVE-2010-4252
Disclosure Timeline:
Release Date: 2011-03-02
Last Updated: 2011-03-01
|
|
|