HP-UX PHSS_36286 : HP-UX running Kerberos, Remote Arbitrary Code Execution (HPSBUX02217 SSRT071337 rev.2)

This script is Copyright (C) 2007-2015 Tenable Network Security, Inc.

Synopsis :

The remote HP-UX host is missing a security-related patch.

Description :

s700_800 11.11 KRB5-Client Version 1.0 cumulative patch :

A potential security vulnerability has been identified on HP-UX
running Kerberos. The vulnerability could be exploited by remote
authorized users to execute arbitrary code.

See also :


Solution :

Install patch PHSS_36286 or subsequent.

Risk factor :

High / CVSS Base Score : 8.5
CVSS Temporal Score : 7.4
Public Exploit Available : false

Family: HP-UX Local Security Checks

Nessus Plugin ID: 26152 (hpux_PHSS_36286.nasl)

Bugtraq ID: 23282

CVE ID: CVE-2007-1216