|
HP Tru64 UNIX and HP Internet Express Perl Vulnerability
|
|
Secunia Advisory:
|
SA20894
|
|
|
Release Date:
|
2006-06-30
|
|
Popularity:
|
7,284 views
|
|
|
Critical:
|
 Moderately critical
|
|
Impact:
|
DoS System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | HP Tru64 UNIX 5.x
|
|
| Software: | HP Internet Express 6.x
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
|
| CVE reference: | CVE-2005-3962
|
|
Description: HP has acknowledged a vulnerability in HP Tru64 UNIX and HP Internet Express running Perl, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable Perl application.
For more information:
SA17802
The vulnerability has been reported in the following products with Perl version 5.8.2 and prior:
* HP Tru64 UNIX 5.1B-3
* HP Tru64 UNIX 5.1B-2/PK4
* HP Tru64 UNIX 5.1A PK6
* HP Internet Express 6.3 for HP Tru64 UNIX
* HP Internet Express 6.4 for HP Tru64 UNIX
* HP Tru64 UNIX Associated Products CD (APCD) for HP Tru64 UNIX v 5.1B-3 (BL25) and earlier
Solution: Apply patch kit PERL_V51BB26-ES-20060612.
HP Tru64 UNIX Version 5.1B-3:
http://www.itrc.hp.com/service/patch/...l.do?patchid=PERL_V51BB26-ES-20060612
MD5 Checksum: 49bb5de02b3236a0991698ec5f3ca648
HP Internet Express Version 6.5:
http://h30097.www3.hp.com/internet/prod_sol.htm
Original Advisory: HPSBTU02125 SSRT061105:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00686865
Other References: SA17802:
http://secunia.com/advisories/17802/
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|