Operating System - HP-UX
1832995 Members
2194 Online
110048 Solutions
New Discussion

CDE dtspcd daemon buffer overflow

 
User_10
Occasional Advisor

CDE dtspcd daemon buffer overflow

Hi

I have a HP C3000 Workstation running HP UX 11.11.We will run ISS to check the vulnerability in the network
The ISS report generates a High vulnerability error CDE dtspcd daemon buffer overflow.The remedy for that is to install the patch PHSS_25788 for HP.UX 11.11.The same has been installed.But the vulnerability is still showing the error.I tried the most recent patch PHSS_30788 and tried.But same problem.Vulnerability is still high.

Please advice.
3 REPLIES 3
Eric Antunes
Honored Contributor

Re: CDE dtspcd daemon buffer overflow

Hi TCS,

See the following links:

http://www4.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0111-175

http://www.kb.cert.org/vuls/id/172583

Best regards,

Eric Antunes
Each and every day is a good day to learn.
User_10
Occasional Advisor

Re: CDE dtspcd daemon buffer overflow

Hi

I have gone through the document and then installed the patches as necessary.Please note my problem is after installing the patches also i am getting a high vulnerability in the ISS scan report.
Eric Antunes
Honored Contributor

Re: CDE dtspcd daemon buffer overflow

Hi,

Have you installed the last related CDE patches for UX 11.11? Those are:

PHCO_29029, PHKL_30286, PHSS_23818, PHSS_29279, PHSS_30263, PHSS_30283, PHSS_30349, PHSS_30262, PHSS_30011, PHSS_27873, PHSS_30790, PHSS_28681, PHSS_30871, PHSS_30966

After that check, you can also run a pacth assessment, witch allows you to see what security patches you need:

http://www4.itrc.hp.com/service/patch/assessSystemsPage.do

Best Regards,

Eric Antunes
Each and every day is a good day to learn.