yHWS15-001z
|
Update: March 13, 2015
GNU C Library (glibc) 'GHOST' issue@(CVE-2015-0235)
PDOverview
GNU C Library (glibc) contains a heap buffer overflow vulnerability(CVE-2015-0235) that may allow an attacker to remotely execute arbitrary code..
Affected products and versions are listed below. Please upgrade your version to the appropriate version.
Affected Version
glibc 2.2 - 2.17
Reference
NVD
https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-0235
QDproducts
The products using glibc in Linux are as follows.
Table 1 :software product
No. |
Product name |
Correspondence |
Remarks |
1 |
Red Hat Enterprise Linux |
For details, Please refer to next Red Hat company public release information.
https://access.redhat.com/security/cve/CVE-2015-0235
|
List added January 30, 2015 |
2 |
JP1, Cosminexus, HiRDB, Hitachi Command Suite, others
|
Not Affected. I use glibc. Please apply a changed program and patch offered than an OS vendor.
|
List added January 30, 2015 List updated February 06, 2015 |
Table 2 :server product
No. |
Product name |
Correspondence |
Remarks |
1 |
BladeSymphony/Hitachi Compute Blade
BS2500/BS2000/BS500/BS320/BS1000
The CB2500/CB2000/CB500/CB320 series (including the utility of an optional product and the accompaniment)
|
Not Affected. |
List added January 30, 2015 List updated February 19, 2015 |
2 |
Virtage/Logical partitioning manager(BladeSymphony/Hitachi Compute Blade BS2500/BS2000/BS500/BS320/BS1000 The CB2500/CB2000/CB500/CB320 series) |
Not Affected. |
List added January 30, 2015 List updated February 19, 2015 |
Virtage Navigator, HVM administrative command (HvmSh) |
Not Affected. |
3 |
HA8000/Hitachi Compute Rack series (utility of an optional product and the accompaniment) |
Not Affected. |
List added January 30, 2015 List updated February 19, 2015 |
4 |
HA8500 series |
SDE6 model |
Not Affected. |
List added January 30, 2015 List updated February 19, 2015 |
Model except the above |
Not Affected. |
5 |
H9000V series |
Not Affected. |
6 |
EP8000 series /SR16000 series |
Not Affected. |
List added February 10, 2015 |
7 |
HA8000-bd series |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
8 |
HA8000-tc series |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
9 |
FLORA bd100/bd500 series |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
10 |
FLORA Se210/Se330 series |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
11 |
Hitachi bd Link |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
12 |
BR1200 |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
13 |
Tape library device L1/8A, Lx/24, Lx/48,Lx/30A, L20/300 |
Not Affected. |
List added January 30, 2015 List updated March 13,2015 |
L18/500, L56/3000, L64/8500 |
Not Affected. |
14 |
UPS (uninterruptive power supply) / management software / made in Hitachi is optional PowerMonitor H, PowerMonitor H for Network, SNMP interface card, disk interface card, SNMP+ disk interface card |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
15 |
UPS (uninterruptive power supply) / management software / made by an APC is optional PowerChute Business Edition, PowerChute Network Shutdown, Network Management Card, Legacy Communication Card |
Please apply a changed program and patch offered than an OS vendor.
|
List added January 30, 2015 List updated March 13,2015 |
16 |
Display / key-board unit / console change over unit |
Not Affected. |
List added February 06, 2015 List updated February 09, 2015 |
17 |
Load balancer BIG-IP1500, AX series, EL130 |
Not Affected. |
List added January 30, 2015 List updated February 19, 2015 |
18 |
Hitachi Server Navigator Update Manager, Log Collect, Log Monitor, Alive Monitor, RAID Navigatorr |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
19 |
Hitachi Server Navigator Installation Assistant |
Not Affected. |
List added February 06, 2015 List updated February 09, 2015 |
20 |
Hitachi Fibre Channel - Path Control Manager |
Not Affected. |
List added January 30, 2015 List updated February 09, 2015 |
Table 3 : storage product
No. |
Product name |
Correspondence |
Remarks |
1 |
Hitachi Virtual File PlatformAHitachi Data IngestorAHitachi NAS Platform F |
Not affecte,@after version 03-01-00-00. Affected, before version 03-01-00-00. |
List added January 30, 2015 List updated February 03, 2015 |
2 |
Hitachi Adaptable Modular Storage 2000ABR1600 (HSNM2) |
Not Affected. |
List added January 30, 2015 List updated February 06, 2015 |
3 |
Hitachi Unified Storage 100ABR1650 (HSNM2) |
Not Affected. |
List added January 30, 2015 List updated February 06, 2015 |
4 |
Hitachi tape array device (TF) (automatic execution utility, telecontrol utility) |
Not Affected. |
List added January 30, 2015 List updated March 13,2015 |
5 |
Hitachi Universal Storage Platform V/VM |
Not Affected. |
List added January 30, 2015 |
6 |
Hitachi Virtual Storage Platform |
Not Affected. |
List added January 30, 2015 |
7 |
Hitachi Virtual Storage Platform G1000 |
Not Affected. |
List added January 30, 2015 |
8 |
BCM |
Not Affected. |
List added January 30, 2015 |
9 |
Hitachi storage connection product (FC-SW) |
Not Affected. |
List added January 30, 2015 List updated February 10, 2015 |
RDReference
For details about this information, contact your Hitachi support service representative.
|
|
Revision history
- March 13,2015 updated a list of storage product and server product.
- February 19,2015 updated a list of server product.
- February 10,2015 updated a list of server product and storage product.
- February 09,2015 updated a list of server product.
- February 06,2015 updated a list of software product and server product and storage product.
- February 03,2015 updated a list of storage product.
- January 30, 2015 This page is released.
- The Web pages include information about products that are developed by non-Hitachi software developers. Vulnerability information about those products is based on the information provided or disclosed by those developers. Although Hitachi is careful about the accuracy and completeness of this information, the contents of the Web pages may change depending on the changes made by the developers.
|
@
|