Secunia Security Advisory - HP has issued an update for Netscape / Red Hat Directory Server. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, cause a DoS (Denial of Service), and potentially compromise a vulnerable system.
d0901df09bebec3251ae071379dcea947d6f532a79f87401538edf0903f00065
----------------------------------------------------------------------
Want a new job?
http://secunia.com/secunia_security_specialist/
http://secunia.com/hardcore_disassembler_and_reverse_engineer/
----------------------------------------------------------------------
TITLE:
HP-UX update for Netscape / Red Hat Directory Server
SECUNIA ADVISORY ID:
SA31702
VERIFY ADVISORY:
http://secunia.com/advisories/31702/
CRITICAL:
Moderately critical
IMPACT:
Cross Site Scripting, DoS, System access
WHERE:
>From remote
OPERATING SYSTEM:
HP-UX 11.x
http://secunia.com/product/138/
DESCRIPTION:
HP has issued an update for Netscape / Red Hat Directory Server. This
fixes some vulnerabilities, which can be exploited by malicious people
to conduct cross-site scripting attacks, cause a DoS (Denial of
Service), and potentially compromise a vulnerable system.
For more information:
SA31565
The vulnerabilities are reported in HP-UX B.11.11, B.11.23, and
B.11.31 running Netscape / Red Hat Directory Server v6.21 and v7.10.
SOLUTION:
Apply updates.
-- NSDirSvr B.06.21 --
HP-UX B.11.11:
NetscapeDirSvr6.NDS-ADM
NetscapeDirSvr6.NDS-BASE
NetscapeDirSvr6.NDS-BSCLNT
NetscapeDirSvr6.NDS-BSJRE
NetscapeDirSvr6.NDS-NC
NetscapeDirSvr6.NDS-NSPERL
NetscapeDirSvr6.NDS-PERLDAP
NetscapeDirSvr6.NDS-SLAPD
NetscapeDirSvr6.NDS-SLCLNT
NetscapeDirSvr6.NDS-SVCORE
Install update B.06.21.70 or subsequent.
http://www.hp.com/go/softwaredepot/
HP-UX B.11.23:
NetscapeDirSvr6.NDS-ADM
NetscapeDirSvr6.NDS-BASE
NetscapeDirSvr6.NDS-BSCLNT
NetscapeDirSvr6.NDS-BSJRE
NetscapeDirSvr6.NDS-NC
NetscapeDirSvr6.NDS-NSPERL
NetscapeDirSvr6.NDS-PERLDAP
NetscapeDirSvr6.NDS-SLAPD
NetscapeDirSvr6.NDS-SLCLNT
NetscapeDirSvr6.NDS-SVCORE
Install update B.06.21.70 or subsequent.
http://www.hp.com/go/softwaredepot/
-- For NSDirSvr B.07.10 --
HP-UX B.11.11:
NetscapeDirSvr7.NDS-ADM
NetscapeDirSvr7.NDS-BASE
NetscapeDirSvr7.NDS-BSCLNT
NetscapeDirSvr7.NDS-BSJRE
NetscapeDirSvr7.NDS-NC
NetscapeDirSvr7.NDS-NSPERL
NetscapeDirSvr7.NDS-PERLDAP
NetscapeDirSvr7.NDS-RUN
NetscapeDirSvr7.NDS-SLAPD
NetscapeDirSvr7.NDS-SLCLNT
NetscapeDirSvr7.NDS-SVCORE
Install update B.07.10.50 or subsequent.
http://www.hp.com/go/softwaredepot/
HP-UX B.11.23:
NetscapeDirSvr7.NDS-ADM
NetscapeDirSvr7.NDS-BASE
NetscapeDirSvr7.NDS-BSCLNT
NetscapeDirSvr7.NDS-BSJRE
NetscapeDirSvr7.NDS-NC
NetscapeDirSvr7.NDS-NSPERL
NetscapeDirSvr7.NDS-PERLDAP
NetscapeDirSvr7.NDS-RUN
NetscapeDirSvr7.NDS-SLAPD
NetscapeDirSvr7.NDS-SLCLNT
NetscapeDirSvr7.NDS-SVCORE
Install update B.07.10.50 or subsequent.
http://www.hp.com/go/softwaredepot/
HP-UX B.11.31:
NetscapeDirSvr7.NDS-ADM
NetscapeDirSvr7.NDS-BASE
NetscapeDirSvr7.NDS-BSCLNT
NetscapeDirSvr7.NDS-BSJRE
NetscapeDirSvr7.NDS-NC
NetscapeDirSvr7.NDS-NSPERL
NetscapeDirSvr7.NDS-PERLDAP
NetscapeDirSvr7.NDS-RUN
NetscapeDirSvr7.NDS-SLAPD
NetscapeDirSvr7.NDS-SLCLNT
NetscapeDirSvr7.NDS-SVCORE
Install update B.07.10.50 or subsequent.
http://www.hp.com/go/softwaredepot/
ORIGINAL ADVISORY:
HPSBUX02354 SSRT080113:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01532861
OTHER REFERENCES:
SA31565:
http://secunia.com/advisories/31565/
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------