Secunia Security Advisory - Some vulnerabilities have been reported in HP Select Identity, which can be exploited by malicious users to bypass certain security restrictions or potentially compromise a vulnerable system.
3fdbf425177b270b735c117cd54bc23de2b5870524a86876ba893ab13d1236fc
----------------------------------------------------------------------
A new version (0.9.0.0 - Release Candidate 1) of the free Secunia PSI
has been released. The new version includes many new and advanced
features, which makes it even easier to stay patched.
Download and test it today:
https://psi.secunia.com/
Read more about this new version:
https://psi.secunia.com/?page=changelog
----------------------------------------------------------------------
TITLE:
HP Select Identity Multiple Unspecified Vulnerabilities
SECUNIA ADVISORY ID:
SA28844
VERIFY ADVISORY:
http://secunia.com/advisories/28844/
CRITICAL:
Less critical
IMPACT:
Security Bypass, System access
WHERE:
>From remote
SOFTWARE:
HP Select Identity 4.x
http://secunia.com/product/16073/
DESCRIPTION:
Some vulnerabilities have been reported in HP Select Identity, which
can be exploited by malicious users to bypass certain security
restrictions or potentially compromise a vulnerable system.
The vulnerabilities are caused due to unspecified errors. No further
information is currently available.
The vulnerabilities are reported in version 4.00, 4.01, 4.11, 4.12,
4.13 and 4.20, running on HP-UX, Windows 2003 Server, Red Hat Linux
AS3 and AS4, and Solaris.
SOLUTION:
Apply vendor patches.
http://support.openview.hp.com/selfsolve/patches
HP Select Identity Software 4.00:
Apply HPSI patch 4.00.012.
HP Select Identity Software 4.01:
Apply HPSI patch 4.01.014.
HP Select Identity Software 4.11:
Apply HPSI patch 4.11.001HF1.
HP Select Identity Software 4.12:
Apply HPSI patch 4.12.000HF6.
HP Select Identity Software 4.13:
Apply HPSI patch 4.13.004.
HP Select Identity Software 4.20:
Apply HPSI patch 4.20.001.
PROVIDED AND/OR DISCOVERED BY:
Reported by the vendor.
ORIGINAL ADVISORY:
HPSBMA02309 SSRT080013:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01346579
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------