Secunia Logo
Netsikker nu! 2008
 
HP-UX update for Apache
Secunia Advisory: SA28965
Release Date: 2008-02-14
Popularity: 4,714 views

Critical:
Less critical
Impact: Cross Site Scripting
Where: From remote
Solution Status: Vendor Patch

OS:HP-UX 11.x

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-6388


Description:
HP-UX has issued an update for Apache. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks.

For more information:
SA28081

NOTE: The original advisory from the vendor was issued as a remote code execution vulnerability, which is believed to be incorrect based on the referenced CVE identifier.

Solution:
Apply patches or update to the latest version.

B.11.11 (IPv4):
HPUXWSA-B218-04-1111ipv4.depot
e076b787b0f54fa4b88557f8c4b8f0c8

B.11.11 (IPv6):
HPUXWSA-B218-04-1111ipv6.depot
e076b787b0f54fa4b88557f8c4b8f0c8

B.11.23 PA-32:
HPUXWSA-B218-04-1123-32.depot
27ab39c4726ea4ccc5d653f2fcb2a647

B.11.23 IA-64:
HPUXWSA-B218-04-1123-64.depot
38b8342a767fa3c5d2fceda5c4ee658f

B.11.31 PA-32:
HPUXWSA-B218-04-1131-32.depot
2bf7e2c88929b2ae15a292cb39bc6dd4

B.11.31 IA-64:
HPUXWSA-B218-04-1131-64.depot
4143e30ecc56bd29d73c7d22f7ea594a


HP-UX B.11.11 (IPv4):
hpuxwsAPACHE
Install revision A.2.0.59.00.3 or subsequent.

HP-UX B.11.11, HP-UX B.11.23, HP-UX B.11.31 (IPv6):
hpuxwsAPACHE
Install revision B.2.0.59.00.3 or subsequent.

Original Advisory:
HPSBUX02313 SSRT080015:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01364714

Other References:
SA28081:
http://secunia.com/advisories/28081/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

7th Oct, 2008
New advisories: 19
New vulnerabilities: 68
Updated advisories: 62

Moderately // 345 views
Debian update for php5
Moderately // 273 views
Atarone CMS Multiple Vulnerabilities
Moderately // 299 views
Debian update for squid
Less // 300 views
SUSE update for mercurial
Moderately // 348 views
SUSE update for openssh
Less // 279 views
Fedora update for mediawiki

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Zeroboard Multiple Vulnerabilities // 34 views
2. Juniper Products Neighbor Discovery Protocol Neighbor Solicitation Vulnerability // 31 views
3. HP-UX NFS/ONCplus Denial of Service Vulnerability // 30 views
4. Zeroboard Two Vulnerabilities // 30 views
5. D-Bus "_dbus_validate_signature_with_reason()" Denial of Service // 26 views
6. Debian update for php5 // 24 views
7. Atarone CMS Multiple Vulnerabilities // 24 views
8. H-Sphere webshell4 Cross-Site Scripting and Request Forgery // 22 views
9. CMME Information Disclosure Security Issues // 21 views
10. MetaGauge Directory Traversal Vulnerability // 21 views