Oval Definition:oval:org.mitre.oval:def:18920
Revision Date:2015-04-20Version:29
Title:HP-UX Running Apache, Remote Denial of Service (DoS), Execution of Arbitrary Code and other vulnerabilities
Description:The TLS protocol 1.2 and earlier, as used in Mozilla Firefox, Google Chrome, Qt, and other products, can encrypt compressed data without properly obfuscating the length of the unencrypted data, which allows man-in-the-middle attackers to obtain plaintext HTTP headers by observing length differences during a series of guesses in which a string in an HTTP request potentially matches an unknown string in an HTTP header, aka a "CRIME" attack.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2012-4929
Platform(s):HP-UX 11
Product(s):
Definition Synopsis
  • Criteria meets HP Security Bulletin HPSBUX02866
  • platforms
  • HP-UX B.11.23
  • OR HP-UX B.11.31
  • AND filesets tests
  • hpuxws22APCH32.APACHE version is less than B.2.2.15.15
  • OR hpuxws22APCH32.APACHE2 version is less than B.2.2.15.15
  • OR hpuxws22APCH32.AUTH_LDAP version is less than B.2.2.15.15
  • OR hpuxws22APCH32.AUTH_LDAP2 version is less than B.2.2.15.15
  • OR hpuxws22APCH32.MOD_JK version is less than B.2.2.15.15
  • OR hpuxws22APCH32.MOD_JK2 version is less than B.2.2.15.15
  • OR hpuxws22APCH32.MOD_PERL version is less than B.2.2.15.15
  • OR hpuxws22APCH32.MOD_PERL2 version is less than B.2.2.15.15
  • OR hpuxws22APCH32.PHP version is less than B.2.2.15.15
  • OR hpuxws22APCH32.PHP2 version is less than B.2.2.15.15
  • OR hpuxws22APCH32.WEBPROXY version is less than B.2.2.15.15
  • OR hpuxws22APCH32.WEBPROXY2 version is less than B.2.2.15.15
  • OR Criteria meets HP Security Bulletin HPSBUX02866
  • HP-UX B.11.31
  • OR hpuxws22TOMCAT.TOMCAT version is less than C.6.0.36.01
  • OR hpuxws22TOMCAT.TOMCAT version is less than D.7.0.35.01
  • BACK