|
HP-UX update for Apache
|
|
Secunia Advisory:
|
SA27037
|
|
|
Release Date:
|
2007-10-08
|
|
Popularity:
|
4,596 views
|
|
|
Critical:
|
 Highly critical
|
|
Impact:
|
Security Bypass Cross Site Scripting Exposure of sensitive information DoS System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | HP-UX 11.x
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
|
| CVE reference: | CVE-2005-2090 CVE-2006-5752 CVE-2007-0450 CVE-2007-0774 CVE-2007-1355 CVE-2007-1358 CVE-2007-1860 CVE-2007-1863 CVE-2007-1900 CVE-2007-2450 CVE-2007-2756 CVE-2007-2872 CVE-2007-3382 CVE-2007-3385 CVE-2007-3386
|
|
Description: HP has issued an update for Apache. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, disclose sensitive information, conduct cross-site scripting attacks, cause a DoS (Denial of Service), or compromise a vulnerable system.
For more information:
SA24089
SA24398
SA24732
SA24824
SA25378
SA25383
SA25456
SA25678
SA25721
SA25827
SA26465
SA26466
Solution: Apply updates or install HP-UX Apache-based Web Server v.2.18.
https://www.hp.com/go/softwaredepot/
IPv4 (HP-UX B.11.11 ):
Install revision A.2.0.59.00 or subsequent.
IPv6 (HP-UX B.11.11, HP-UX B.11.23, HP-UX B.11.31):
Install revision B.2.0.59.00 or subsequent.
Original Advisory: HPSBUX02262 SSRT071447:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01178795
Other References: SA24089:
http://secunia.com/advisories/24089/
SA24398:
http://secunia.com/advisories/24398/
SA24732:
http://secunia.com/advisories/24732/
SA24824:
http://secunia.com/advisories/24824/
SA25378:
http://secunia.com/advisories/25378/
SA25383:
http://secunia.com/advisories/25383/
SA25456:
http://secunia.com/advisories/25456/
SA25678:
http://secunia.com/advisories/25678/
SA25721:
http://secunia.com/advisories/25721/
SA25827:
http://secunia.com/advisories/25827/
SA26465:
http://secunia.com/advisories/26465/
SA26466:
http://secunia.com/advisories/26466/
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|