Oval Definition:
oval:org.mitre.oval:def:5701
Revision Date
:
2014-03-24
Version
:
21
Title
:
HP-UX ftpd, Remote Privileged Access
Description
:
Stack-based buffer overflow in the FTP daemon in HP-UX 11.11i, with the -v (debug) option enabled, allows remote attackers to execute arbitrary code via a long command request.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2004-1332
Platform(s)
:
HP-UX 11
Product(s)
:
Definition Synopsis
Criteria meets HP Security Bulletin HPSBUX01118
HP Release B.11.00
AND
WUFTP-26.INETSVCS-FTP version is less than B.11.00.01.003
OR
Criteria meets HP Security Bulletin HPSBUX01118
HP Release B.11.04
AND
InternetSrvcs.INETSVCS-RUN is installed
AND
NOT
Patch PHNE_31034 is installed
OR
Criteria meets HP Security Bulletin HPSBUX01118
HP-UX B.11.11
AND
WUFTP-26.INETSVCS-FTP version is less than B.11.11.01.003
OR
Criteria meets HP Security Bulletin HPSBUX01118
HP-UX B.11.11
AND
InternetSrvcs.INETSVCS-RUN is installed
AND
NOT
Patch PHNE_29461 is installed
OR
Criteria meets HP Security Bulletin HPSBUX01118
HP Release B.11.22
AND
InternetSrvcs.INETSVCS2-RUN is installed
AND
NOT
Patch PHNE_29462 is installed
OR
Criteria meets HP Security Bulletin HPSBUX01118
HP Release B.11.00
AND
InternetSrvcs.INETSVCS-RUN is installed
AND
NOT
Patch PHNE_29460 is installed
BACK