Secunia Security Advisory - HP has acknowledged two vulnerabilities in HP Insight Control Suite For Linux, which can be exploited by malicious users to compromise a vulnerable system and by malicious people to bypass certain security restrictions.
6126821d96ee6ecd67e23f28b6e292c57d466078025e6ee73ee85e3f283f1cb4
----------------------------------------------------------------------
Secunia CSI
+ Microsoft SCCM
-----------------------
= Extensive Patch Management
http://secunia.com/vulnerability_scanning/corporate/wsus_sccm_3rd_third_party_patching/
----------------------------------------------------------------------
TITLE:
HP Insight Control Suite For Linux Two Vulnerabilities
SECUNIA ADVISORY ID:
SA39227
VERIFY ADVISORY:
http://secunia.com/advisories/39227/
DESCRIPTION:
HP has acknowledged two vulnerabilities in HP Insight Control Suite
For Linux, which can be exploited by malicious users to compromise a
vulnerable system and by malicious people to bypass certain security
restrictions.
1) A vulnerability is caused due to an unspecified error. Further
information is currently not available.
2) A vulnerability is caused due to the usage of vulnerable version
of Nagios.
For more information:
SA35543
The vulnerabilities are reported in version 2.11 and earlier.
SOLUTION:
Upgrade to HP IC-Linux v6.0 product kit.
HP_Insight_Control_for_Linux_V6.00_TC208_11001.iso:
https://h20392.www2.hp.com/portal/swdepot/try.do?productNumber=HPICELX
PROVIDED AND/OR DISCOVERED BY:
1) Reported by the vendor.
ORIGINAL ADVISORY:
HPSBMA02513 SSRT090110:
https://www11.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02062621
OTHER REFERENCES:
SA35543:
http://secunia.com/advisories/35543/
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
private users keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/advisories/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/advisories/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------