HP OpenView Network Node Manager JRE and JDK Vulnerabilities
9 Apr. 2010
Summary
Potential security vulnerabilities have been identified with the Java Runtime Environment (JRE) and Java Developer Kit (JDK) delivered with HP OpenView Network Node Manager (OV NNM).
Vulnerable Systems:
* HP OpenView Network Node Manager (OV NNM) v7.51
* HP OpenView Network Node Manager (OV NNM) v7.53
Potential security vulnerabilities have been identified with the Java Runtime Environment (JRE) and Java Developer Kit (JDK) delivered with HP OpenView Network Node Manager (OV NNM). These vulnerabilities may allow remote unauthorized access, privilege escalation, execution of arbitrary code, and creation of a Denial of Service (DoS).
Note: The patches are not available from the HP IT Resource Center (ITRC).
OV NNM v7.53
Operating_System / Patch
HP-UX (IA) / PHSS_40374 or subsequent
HP-UX (PA) / PHSS_40375 or subsequent
Linux RedHatAS2.1 / LXOV_00101 or subsequent
Linux RedHat4AS-x86_64 / LXOV_00102 or subsequent
Solaris / PSOV_03525 or subsequent
Windows / NNM_01201 or subsequent
OV NNM v7.51
Upgrade to NNM v7.53 and apply the NNM v7.53 resolution listed above.
Patch bundles for upgrading from NNM v7.51 to NNM v7.53 are available using ftp: