Advertisement
Promo

Industry watch Toolkit

Anti-virus experts issue HP hole alert

Wendy McAuliffe ZDNet.co.uk

Published: 16 Aug 2001 12:37 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Anti-virus experts are warning IT administrators to be ahead of the game with a new HP OpenView and NetView vulnerability, which was reported on Wednesday, in order to prevent a repeat of the Code Red fiasco.

Systems running the Hewlett-Packard (HP) OpenView Network Node Manager version 6.1, or Tivoli NetView versions 5.x and 6.x have been found to contain a hole that could allow an intruder to gain complete administrative control of a machine. The vulnerability has been reported on the Cert Advisory mailing list, and anti-virus experts are anxious for system administrators to install the patch released by HP on 21 June, in order to pre-empt the creation of any copycat Code Red worms.

"In wake of Code Red, it has never been more important to install the patch," said Graham Cluely, senior technology consultant for anti-virus company Sophos. "Hackers are often on these mailing lists, so system administrators need to be ahead of the game," he added. In the case of Code Red, Microsoft released a patch for the Internet Information Server (IIS) software vulnerability on 18 June, but it was not until a month later that the self-propagating worm was unleashed.

The new HP vulnerability is in ovactiond -- the control management standard and event handler for OpenView and NetView -- and could allow an intruder to execute arbitrary commands by sending a malicious message to the management server. There is also the additional threat that an intruder may be able to leverage the trust relationship that a compromised system has with other network devices, and attack these or make changes to the network configuration.

"This is a good reminder that it's not just Microsoft that goofs up -- any software can contain holes," said Cluley. "HP software isn't in as common use as IIS -- but it's a different community of people who don't want to go down the Microsoft route."

See the Viruses and Hacking News Section for the latest headlines.

Have your say instantly, and see what others have said. Click on the TalkBack button and go to the Security forum.

Let the editors know what you think in the Mailroom. And read other letters.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
57 out of 114 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:













Discussions

Tezzer Tezzer

The only surprise...

Wednesday 16 December 2009, 1:47 PM

3 comments
ator1940 ator1940

Cloud apps

Wednesday 16 December 2009, 1:33 PM

1 comment
ator1940 ator1940

MS copy?

Wednesday 16 December 2009, 1:25 PM

3 comments
J.A. Watson J.A. Watson

Big Surprise... NOT!

Wednesday 16 December 2009, 12:05 PM

3 comments
Video icon

Video

Featured Talkback

In association with Network Liberation Movement
When all is said, if Microsoft produce the best product people will buy it and thats a good thing. If people have to buy their product because no one else can produce an alternative, only because interoperability protocols are kept secret, then thats a bad thing.

By: pround

Read full story:
EU court crushes Microsoft's antitrust appeal


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters