AIX

AIX

Connect with fellow AIX users and experts to gain knowledge, share insights, and solve problems.


#Power
 View Only
  • 1.  How to fix vulnerabilities in HMC

    Posted Tue May 13, 2008 04:45 AM

    Originally posted by: Miztiik


    My Ethical hacking team have found some vulnerabilities in my HMC?

    This is the vulnerability message they have given me
    "
    low HTTP/80/TCP Server version `Apache/2.0.49
    (Linux/SuSE)' is known to contain vulnerabilities.
    "
    I was also asked refer to this
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=*CAN-2004-0885*
    This is my HMC Version
    lshmc -V
    "version= Version: 6
    Release: 1.3
    HMC Build level 20070910.1
    ","base_version=V6.1.0
    "

    When i was looking for info in this web link http://www14.software.ibm.com/webapp/set2/sas/f/hmc/power5/download/v61x.html#613

    Here in this page that particular CVE is liste under Security Fixes

    My question here is,
    Does that mean the vulnerability had been fixed. or if not, how can i fix it?

    Message was edited by: Miztiik
    #AIX-Forum


  • 2.  Re: How to fix vulnerabilities in HMC

    Posted Tue May 13, 2008 03:38 PM

    Originally posted by: dukessd


    Yes, it was fixed in PTF MH00919 in V6 R1.2 and as you are at V6 R1.3 you will have the fix.
    #AIX-Forum


  • 3.  Re: How to fix vulnerabilities in HMC

    Posted Tue May 13, 2008 04:21 PM

    Originally posted by: Miztiik


    Thanks for the quick reply
    #AIX-Forum