Oval Definition:oval:org.mitre.oval:def:5943
Revision Date:2015-04-20Version:27
Title:HP-UX Running IPv6, Remote Denial of Service (DoS) and Unauthorized Access
Description:The IPv6 Neighbor Discovery Protocol (NDP) implementation in HP HP-UX B.11.11, B.11.23, and B.11.31 does not validate the origin of Neighbor Discovery messages, which allows remote attackers to cause a denial of service (loss of connectivity), read private network traffic, and possibly execute arbitrary code via a spoofed message that modifies the Forward Information Base (FIB), a related issue to CVE-2008-2476.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2009-0418
Platform(s):HP-UX 11
Product(s):
Definition Synopsis
  • Criteria meets HP Security Bulletin HPSBUX02407
  • HP-UX B.11.23
  • AND filesets tests
  • OS-Core.SYS2-ADMIN is installed
  • OR Networking.NMS2-KRN is installed
  • OR Networking.NET-RUN-64 is installed
  • OR OS-Core.CORE2-KRN is installed
  • OR Networking.NET-PRG is installed
  • OR Networking.NET-RUN is installed
  • OR ProgSupport.C-INC is installed
  • OR Networking.NET2-KRN is installed
  • OR Networking.NET2-RUN is installed
  • AND NOT Patch PHNE_37897 is installed
  • OR Criteria meets HP Security Bulletin HPSBUX02407
  • HP-UX B.11.11
  • AND filesets tests
  • Networking.NMS2-KRN is installed
  • OR Networking.NET-RUN-64 is installed
  • OR OS-Core.CORE2-KRN is installed
  • OR Networking.NET-PRG is installed
  • OR Networking.NET-RUN is installed
  • OR ProgSupport.C-INC is installed
  • OR Networking.NET2-KRN is installed
  • OR OS-Core.SYS-ADMIN is installed
  • OR Networking.NET-KRN is installed
  • OR OS-Core.CORE-KRN is installed
  • AND NOT Patch PHNE_37898 is installed
  • OR Criteria meets HP Security Bulletin HPSBUX02407
  • HP-UX B.11.31
  • AND filesets tests
  • OS-Core.SYS2-ADMIN is installed
  • OR Networking.NMS2-KRN is installed
  • OR Networking.NET-RUN-64 is installed
  • OR OS-Core.CORE2-KRN is installed
  • OR Networking.NET-RUN is installed
  • OR ProgSupport.C-INC is installed
  • OR Networking.NET2-KRN is installed
  • OR Networking.NET2-RUN is installed
  • AND NOT Patch PHNE_38680 is installed
  • BACK