COMMAND
TCP and UDP ports
SYSTEMS AFFECTED
HP9000 Series 700/800s running:
HP-UX 10.09.01 with VirtualVault A.01.00,
HP-UX 10.16 with VirtualVault A.01.01,
HP-UX 10.24 (VVOS) with VirtualVault A.02.00
PROBLEM
There are well-known ports that the xdm, dtlogin and X servers
listen on. External programs can connect to these ports and
could gain unauthorized access to services using potential bugs
in these servers.
SOLUTION
Hewlett-Packard recommends that the following patches be applied
as appropriate:
HP-UX 10.09.01 with VirtualVault A.01.00:
PHCO_10387 and PHSS_10786
HP-UX 10.16 with VirtualVault A.01.01:
PHCO_10387 and PHSS_10786
HP-UX 10.24 (VVOS) with VirtualVault A.02.00:
PHNE_11096 (Series 700) and PHSS_10613
PHNE_11097 (Series 800) and PHSS_10613
NOTE: These problems only apply to systems running the
VirtualVault Transaction Server.