FUJITSU

CERT Advisory Information (UXP/V)


The following table shows how UXP/V products are affected by CERT Advisory opened to the public from 1998 onward.


2002

CERT Advisory
Number
Opened on Affected Content How dealt with Notes
CA-2002-37 December 19, 2002 No Buffer Overflow in Microsoft Windows Shell - -
CA-2002-36 December 16, 2002 No Multiple Vulnerabilities in SSH Implementations - -
CA-2002-35 December 11, 2002 No Vulnerability in RaQ Server Appliances - -
CA-2002-34 November 25, 2002 Yes Buffer Overflow in Solaris X Window Font Service PUF does not publish *3 -
CA-2002-33 November 21, 2002 No Heap Overflow Vulnerability in Microsoft Data Access Components (MDAC) - -
CA-2002-32 November 21, 2002 No Backdoor in Alcatel OmniSwitch AOS - -
CA-2002-31 November 14, 2002 No Multiple Vulnerabilities in BIND - -
CA-2002-30 November 13, 2002 No Trojan Horse tcpdump and libpcap Distributions - -
CA-2002-29 October 25, 2002 No Buffer Overflow in Kerberos Administration Daemon - -
CA-2002-28 October 8, 2002 No Trojan Horse Sendmail Distribution - -
CA-2002-27 September 14, 2002 No Apache/mod_ssl Worm - -
CA-2002-26 August 12, 2002 No Buffer Overflow in CDE ToolTalk - -
CA-2002-25 August 5, 2002 Yes Integer Overflow in XDR Library PUF making *2 -
CA-2002-24 August 1, 2002 No Trojan Horse OpenSSH Distribution - -
CA-2002-23 July 30, 2002 No Multiple Vulnerabilities in OpenSSL - -
CA-2002-22 July 29, 2002 No Multiple Vulnerabilities in Microsoft SQL Server - -
CA-2002-21 July 29, 2002 No Vulnerability in PHP - -
CA-2002-20 July 10, 2002 No Multiple Vulnerabilities in CDE ToolTalk - -
CA-2002-19 June 28, 2002 Yes Buffer Overflow in Multiple DNS Resolver Libraries PUF created *1 -
CA-2002-18 June 26, 2002 No OpenSSH Vulnerabilities in Challenge Response Handling - -
CA-2002-17 June 17, 2002 No Apache Web Server Chunk Handling Vulnerability - -
CA-2002-16 June 5, 2002 No Multiple Vulnerabilities in Yahoo! Messenger - -
CA-2002-15 June 4, 2002 No Denial-of-Service Vulnerability in ISC BIND 9 - -
CA-2002-14 May 29, 2002 No Buffer overflow in Macromedia JRun - -
CA-2002-13 May 10, 2002 No Buffer Overflow in Microsoft's MSN Chat ActiveX Control - -
CA-2002-12 May 8, 2002 No Format String Vulnerability in ISC DHCPD - -
CA-2002-11 May 6, 2002 No Heap Overflow in Cachefs Daemon (cachefsd) - -
CA-2002-10 May 1, 2002 No Format String Vulnerability in rpc.rwalld - -
CA-2002-09 April 11, 2002 No Multiple Vulnerabilities in Microsoft IIS - -
CA-2002-08 March 15, 2002 No Multiple Vulnerabilities in Oracle Servers - -
CA-2002-07 March 12, 2002 No Double Free Bug in zlib Compression Library - -
CA-2002-06 March 4, 2002 No Vulnerabilities in Various Implementations of the RADIUS Protocol - -
CA-2002-05 February 27, 2002 No Multiple Vulnerabilities in PHP fileupload - -
CA-2002-04 February 25, 2002 No Buffer Overflow in Microsoft Internet Explorer - -
CA-2002-03 February 12, 2002 No Multiple Vulnerabilities in Many Implementations of the Simple Network Management Protocol (SNMP) - -
CA-2002-02 January 24, 2002 No Buffer Overflow in AOL ICQ - -
CA-2002-01 January 14, 2002 No Exploitation of Vulnerability in CDE Subprocess Control Service - -

CERT Advisory PUF Information

  • *3)
    The following fix is made for CA-2002-34.
    Details:
    • UXP/V V20L10
      • UXP/V V20 is not affected by this CERT Advisory.
    • UXP/V V10L20
      • Do not use the corresponding functions under UXP/V V10.
        If you do use the corresponding functions, contact the relevant SE.
  • *2)
    The correction is being made for CA-2002-25.
  • *1)
    The following fix is made for CA-2002-19.
    Details:
    • UXP/V V20L10
      • X00061 - X01081: PUF(UX28314)
      • X02021 - X02111: PUF(UX28316)
    • UXP/V V10L20
      • X02071: PUF(UX15586)