HP-UX PHCO_42317 : HP-UX running VEA, Remote Denial of Service (DoS), Execution of Arbitrary Code (HPSBUX02700 SSRT100506 rev.2)

This script is Copyright (C) 2012-2014 Tenable Network Security, Inc.

Synopsis :

The remote HP-UX host is missing a security-related patch.

Description :

s700_800 11.23 VRTS 3.5 VRTSob Command Patch :

Potential security vulnerabilities have been identified in HP-UX
running the Veritas Enterprise Administrator (VEA), which comes
bundled with VxVM. The vulnerabilities could be exploited remotely to
create a Denial of Service (DoS) or execute arbitrary code.
References: CVE-2011-0547, ZDI-CAN-1110, ZDI-CAN-1111.

See also :


Solution :

Install patch PHCO_42317 or subsequent.

Risk factor :

Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 8.3
Public Exploit Available : true

Family: HP-UX Local Security Checks

Nessus Plugin ID: 56835 ()

Bugtraq ID: 47824

CVE ID: CVE-2011-0547