New User, Welcome!     Login

<< Previous Next >>

Initial Release

[security bulletin] HPSBMA02274 SSRT071445 rev.3 - HP System Management Homepage (SMH) for HP-UX, Remote Cross Site Scripting (XSS)

action: install revision A.2.2.6.2 or subsequent 

END AFFECTED VERSIONS

HISTORY: 
Version:1 (rev.1) - 3 October 2007 Initial Release 
Version:2 (rev.2) - 17 October 2007 Patches require update to SMH vA.2.2.6.2 
Version:3 (rev.3) - 11 February 2008 Correct AFFECTED VERSIONS 

Third Party Security Patches: Third party security patches which are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy. 


CA ARCserve Backup for Laptops and Desktops Server and CA Desktop Management Suite Multiple Vulnerabilities

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1329
OSVDB References: Pending
http://osvdb.org/

Changelog for this advisory:
v1.0 - Initial Release

Customers who require additional information should contact CA
Technical Support at http://support.ca.com.

For technical questions or comments related to this advisory, 

[security bulletin] HPSBGN02696 SSRT100590 rev.1 - HP webOS Calendar Application, Remote Execution of Arbitrary Code

RESOLUTION

The vulnerability can be resolved by updating affected devices to HP webOS version 3.0.2 or subsequent. This update will be provided automatically from HP.

HISTORY
Version:1 (rev.1) - 9 August 2011 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities (Updated - v1.1)

OSVDB References: Pending
http://osvdb.org/


Changelog for this advisory:
v1.0 - Initial Release
v1.1 - Updated Impact, Summary, Affected Products


Customers who require additional information should contact CA
Technical Support at http://support.ca.com.

CA20110809-01: Security Notice for CA ARCserve D2D

None


Change History

Version 1.0: Initial Release


If additional information is required, please contact CA Technologies
Support at support.ca.com


[security bulletin] HPSBMA02572 SSRT100082 rev.1 - HP Operations Agent Running on Windows, Local Elevation of Privileges and Remote Execution of Arbitrary Code

PRODUCT SPECIFIC INFORMATION
None

HISTORY
Version:1 (rev.1) - 2 September 2010 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


CA20091008-01: Security Notice for CA Anti-Virus Engine

CVE-2009-3588 - Thierry Zoller - G-SEC - www.g-sec.lu


Change History

Version 1.0: Initial Release
Version 1.1: Updated list of affected products; added workaround.


If additional information is required, please contact CA Support 
at http://support.ca.com/.

AST-2007-020: Resource Exhaustion Vulnerability in Asterisk SIP channel driver

   +------------------------------------------------------------------------+
   |                            Revision History                            |
   |------------------------------------------------------------------------|
   |        Date         |         Editor         |     Revisions Made      |
   |---------------------+------------------------+-------------------------|
   | August 21, 2007     | russell@digium.com     | Initial Release         |
   +------------------------------------------------------------------------+

               Asterisk Project Security Advisory - AST-2007-020
              Copyright (c) 2007 Digium, Inc. All Rights Reserved.
  Permission is hereby granted to distribute and publish this advisory in its

[security bulletin] HPSBMA02584 SSRT100230 rev.1 - HP System Management Homepage (SMH) for Linux and Windows, Remote URL Redirection

PRODUCT SPECIFIC INFORMATION
None

HISTORY
Version:1 (rev.1) - 22 September 2010 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


[security bulletin] HPSBMI02632 SSRT100379 rev.1 - HP/Palm webOS, Execution of Arbitrary Code, Denial of Service (DoS), Unauthorized File System Write Access

RESOLUTION

The vulnerability can be resolved by updating affected devices to HP/Palm webOS version 2.1 or a subsequent webOS version. This update will be provided automatically from the wireless carrier.

HISTORY
Version:1 (rev.1) - 09 May 2011 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


[security bulletin] HPSBPV02754 SSRT100803 rev.2 - HP ProCurve 5400 zl Switch, Compact flash card contains trojan malware

The release notes for K.15.08.00007 is available here:

http://bizsupport1.austin.hp.com/bc/docs/support/SupportManual/c03277372/c03277372.pdf

HISTORY
Version:1 (rev.1) - 10 April 2012 Initial Release
Version:2 (rev.2) - 26 April 2012 Updated case details and solution choices

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For issues about implementing the recommendations of this Security Bulletin, contact normal HP Services support channel.  For other issues about the content of this Security Bulletin, send e-mail to security-alert@hp.com.

[security bulletin] HPSBST02620 SSRT100356 rev.1 - HP StorageWorks Modular Smart Array P2000 G3, Remote Unauthorized Access

PRODUCT SPECIFIC INFORMATION
None

HISTORY
Version:1 (rev.1) - 15 December 2010 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


CA20090818-02: Security Notice for CA Internet Security Suite

CVE-2009-0682 - Nikita Tarakanov, Positive Technologies Research Team

Change History

Version 1.0: Initial Release

If additional information is required, please contact CA Support at
http://support.ca.com/

If you discover a vulnerability in CA products, please report your

AST-2011-007

   +------------------------------------------------------------------------+
   |                            Revision History                            |
   |------------------------------------------------------------------------|
   |       Date        |         Editor          |      Revisions Made      |
   |-------------------+-------------------------+--------------------------|
   | 06/02/11          | Jonathan Rose           | Initial Release          |
   +------------------------------------------------------------------------+

               Asterisk Project Security Advisory - AST-2011-007
              Copyright (c) 2011 Digium, Inc. All Rights Reserved.
  Permission is hereby granted to distribute and publish this advisory in its

CA20100222-01: Security Notice for CA Service Desk

CVE-2008-1947

Change History

Version 1.0: Initial Release

If additional information is required, please contact CA Support at
http://support.ca.com/

If you discover a vulnerability in CA products, please report your

[security bulletin] HPSBMA02662 SSRT100409 rev.1 - HP System Management Homepage (SMH) for Linux and Windows, Remote Unauthorized Access, Execution of Arbitrary Code, Denial of Service (DoS)

HP System Management Homepage v6.3 or subsequent for Linux (x86), Linux (AMD64/EM64T), and Windows can be downloaded from the following link.

http://www.hp.com/servers/manage/smh

HISTORY
Version:1 (rev.1) - 19 April 2011 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


[security bulletin] HPSBMA02428 SSRT090048 rev.1 - HP System Management Homepage (SMH) for Linux and Windows, Remote Cross Site Scripting (XSS)

PRODUCT SPECIFIC INFORMATION 
None 

HISTORY 
Version:1 (rev.1) - 18 May 2009 Initial Release 

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy. 

Support: For further information, contact normal HP Services support channel.


CA ARCserve Backup caloggerd and xdr Functions Vulnerabilities

OSVDB References: Pending
http://osvdb.org/


Changelog for this advisory:
v1.0 - Initial Release


Customers who require additional information should contact CA
Technical Support at http://support.ca.com.


CA20090126-01: CA Anti-Virus Engine Detection Evasion Multiple Vulnerabilities [Updated]

OSVDB References: OSVDB ID 53604
http://osvdb.org/53604


Changelog for this advisory:
v1.0 - Initial Release
v1.1 - Updated list of affected products, and added solutions.
v1.2 - Added CA ARCserve patch solution.
v1.3 - Updated CA ARCserve patch solution.



CA20110510-01: Security Notice for CA eHealth

CVE-2011-1899 - Tony Fogarty

Change History

Version 1.0: Initial Release
If additional information is required, please contact CA Support at
http://support.ca.com/

If you discover a vulnerability in CA products, please report your
findings to the CA Product Vulnerability Response Team.

CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities

OSVDB References: Pending
http://osvdb.org/


Changelog for this advisory:
v1.0 - Initial Release


Customers who require additional information should contact CA
Technical Support at http://support.ca.com.


[security bulletin] HPSBMA02566 SSRT100045 rev.1 - HP System Management Homepage (SMH) for Linux, Remote Disclosure of Sensitive Information

PRODUCT SPECIFIC INFORMATION
None

HISTORY
Version:1 (rev.1) - 13 September 2010 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


[CAID 35724, 35725, 35726]: CA BrightStor ARCserve Backup Multiple Vulnerabilities

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5332
OSVDB References: Pending
http://osvdb.org/

Changelog for this advisory:
v1.0 - Initial Release

Customers who require additional information should contact CA
Technical Support at http://supportconnect.ca.com.

For technical questions or comments related to this advisory, 

AST-2008-001: Crash from transfer using BYE with Also header

    +------------------------------------------------------------------------+
    |                            Revision History                            |
    |------------------------------------------------------------------------|
    |       Date       |       Editor       |         Revisions Made         |
    |------------------+--------------------+--------------------------------|
    | 2008-01-02       | Joshua Colp        | Initial Release                |
    +------------------------------------------------------------------------+

                Asterisk Project Security Advisory - AST-2008-001
               Copyright (c) 2007 Digium, Inc. All Rights Reserved.
   Permission is hereby granted to distribute and publish this advisory in its

CA20111208-01: Security Notice for CA SiteMinder

CVE-2011-4054 - Jon Passki of Aspect Security, via CERT

Change History

Version 1.0: Initial Release

If additional information is required, please contact CA 
Technologies Support at https://support.ca.com.

If you discover a vulnerability in CA Technologies products, please 

[security bulletin] HPSBMA02624 SSRT100195 rev.2 - HP LoadRunner and HP Performace Center, Remote Execution of Arbitrary Code

Add to the [Attributes] section the key "HttpTunnel=0"

Note: Ports 5001 and 5002 are closed by default in versions of LoadRunner and Performance Center after v9.52.

HISTORY
Version:1 (rev.1) - 12 January 2011 Initial Release
Version:2 (rev.2) - 24 January 2011 Added HP Performance Center

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.

CA20120320-01: Security Notice for CA ARCserve Backup

https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7
b983E3A52-8374-410A-82BD-B8788733C70F%7d

Change History

Version 1.0: Initial Release

If additional information is required, please contact CA Technologies
Support at http://support.ca.com/

If you discover a vulnerability in CA Technologies products,

[security bulletin] HPSBMA02667 SSRT100464 rev.1 - HP SiteScope, Cross Site Scripting (XSS) and HTML Injection

For other impacted versions:
Upgrade to v11.1
apply the SS1110110412 hotfix available by contacting your HP Support channel.
HISTORY
Version:1 (rev.1) - 21 April 2011 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


[security bulletin] HPSBGN02694 SSRT100586 rev.1 - HP webOS Contacts Application, Remote Execution of Arbitrary Code

RESOLUTION

The vulnerability can be resolved by updating affected devices to HP webOS version 3.0.2 or subsequent. This update will be provided automatically from HP.

HISTORY
Version:1 (rev.1) - 9 August 2011 Initial Release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.


[security bulletin] HPSBMU02691 SSRT100483 rev.2 - HP Performance Agent and HP Operations Agent, Remote Arbitrary File Deletion

For Operations Agent v8.60.501 please request hotfix from support: LCore/Lcore_06.21.501/ Security issue, no details available

For Operations Agent v8.53 request hotfix from support: LCore/Lcore_06.20/ Security issue, no details available

HISTORY
Version:1 (rev.1) - 18 July 2011 Initial Release
Version:2 (rev.2) - 27 July 2011 Re-release

Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.

Support: For further information, contact normal HP Services support channel.

<<Previous Next>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!