HP NonStop Server Java Multiple Vulnerabilities

by Carol~ Moderator - 4/27/12 7:00 AM

In Reply to: VULNERABILITIES / FIXES - April 27, 2012 by Carol~ Moderator

Release Date : 2012-04-27

Criticality level : Highly critical
Impact : Manipulation of data
Exposure of sensitive information
DoS
System access
Where : From remote
Solution Status : Vendor Patch

Operating System: HP NonStop Server 6.x

Description:
HP has acknowledged multiple vulnerabilities in HP NonStop Server, which can be exploited by malicious users to disclose sensitive information and by malicious people to disclose sensitive information, manipulate certain data, cause a DoS (Denial of Service), and compromise a vulnerable system.

Please see the vendor's advisory for a list of affected products.

Solution:
Update to a fixed version (please see the vendor's advisory for more information).

Original Advisory:
HPSBNS02767 SSRT100829:
http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03289980

http://secunia.com/advisories/48977/