Novell is now a part of Micro Focus

My Favorites

Close

Please to see your favorites.

Advanced Search

Results for: Clear | Save SearchSearch Saved

26-50 of 108

« prev | next »

Key:

  • Best Bet
  • Support TID
  • Articles/Tips
  • Documentation
  • Patches/Security
  • Forums

OpenSSL 1.0.1t updates for NetIQ Access Manager (7017583)
10 May 2016 ...Access Gateway Service:  Apply the instructions from TID 7017582, passing in the filename of novell Openssl_Win_101 to update to OpenSSL 1.0.1t. Additional Information OpenSSL 1.0.1t addresses following CVEs: Prevent padding oracle in AES-NI CBC MAC check

Identity Manager : OpenSSL vulnerability DROWN (CVE-2016-0800) (7017374)
16 Mar 2016 ...It allows an attacker to decrypt intercepted TLS connections by making specially crafted connections to an SSLv2 server that uses the same private key CVE: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-0800 Details: https://drownattack.com/

OpenSSL DROWN Vulnerablity and Attachmate Products (7021979)
2 Mar 2018 ...OpenSSL DROWN Vulnerablity and Attachmate Products. OpenSSL DROWN Vulnerablity and Attachmate Products This document (7021979) is provided subject to the disclaimer at the end of this document. Environment All Attachmate products Situation Current Attachmate

Q&A: Security Update for Management and Security Server (CVE-2016-5765) (7022315)
2 Mar 2018 ...Q&A: Security Update for Management and Security Server (CVE-2016-5765). Q&A: Security Update for Management and Security Server (CVE-2016-5765) This document (7022315) is provided subject to the disclaimer at the end of this document. Environment

rsaz_1024_mul_avx2 overflow bug on x86_64 (CVE-2017-3738) (7022627)
31 Jan 2018 ...rsaz_1024_mul_avx2 overflow bug on x86_64 (CVE-2017-3738). rsaz_1024_mul_avx2 overflow bug on x86_64 (CVE-2017-3738) This document (7022627) is provided subject to the disclaimer at the end of this document. Environment Reflection Desktop 16.1 version

Filr 3.0 Security Update 2 (7022455)
12 Dec 2017 ...Filr 3.0 Security Update 2. Filr 3.0 Security Update 2 This document (7022455) is provided subject to the disclaimer at the end of this document. Environment Micro Focus Filr 3 Situation Security Update for Kernel Local Privilege Escalation (Dirty COW)

CVE-2016-3115 OpenSSH Xauth Command Injection Vulnerability (7022313)
13 Nov 2017 ...CVE-2016-3115 OpenSSH Xauth Command Injection Vulnerability. CVE-2016-3115 OpenSSH Xauth Command Injection Vulnerability This document (7022313) is provided subject to the disclaimer at the end of this document. Environment Service Desk 7 Service Desk

SSLv2, SSLv3 and TLS 1.x support in eDirectory and iManager (7017315)
16 May 2017 ...SSLv2, SSLv3 and TLS 1.x support in eDirectory and iManager. SSLv2, SSLv3 and TLS 1.x support in eDirectory and iManager This document (7017315) is provided subject to the disclaimer at the end of this document. Environment NetIQ eDirectory 9.0.1 NetIQ

CVE-2016-2848: A packet with malformed options can trigger an assertion failure in ISC BIND versions (7018170)
20 Dec 2016 ...CVE-2016-2848: A packet with malformed options can trigger an assertion failure in ISC BIND versions. CVE-2016-2848: A packet with malformed options can trigger an assertion failure in ISC BIND versions This document (7018170) is provided subject to the

Security Vulnerability - Reflected Cross-site scripting (XSS) vulnerability in GroupWise Document Viewer Agent (DVA) (7018371)
7 Dec 2016 ...Security Vulnerability - Reflected Cross-site scripting (XSS) vulnerability in GroupWise Document Viewer Agent (DVA). Security Vulnerability - Reflected Cross-site scripting (XSS) vulnerability in GroupWise Document Viewer Agent (DVA) This document (7018371)

Access Manager XXE vulnerability with test risk servlet (CVE-2016-5748) (7017797)
29 Aug 2016 ...Access Manager XXE vulnerability with test risk servlet (CVE-2016-5748). Access Manager XXE vulnerability with test risk servlet (CVE-2016-5748) This document (7017797) is provided subject to the disclaimer at the end of this document. Environment NetIQ

Can upload webshell via JSP pages with iManager cert server snapins which can be used to trigger system calls (CVE-2016-5750) (7017807)
29 Aug 2016 ...Can upload webshell via JSP pages with iManager cert server snapins which can be used to trigger system calls (CVE-2016-5750). Can upload webshell via JSP pages with iManager cert server snapins which can be used to trigger system calls (CVE-2016-5750)

Identity Server cannot validate incoming AuthnRequest ACS URL tag when request is unsigned (CVE-2016-5752) (7017809)
29 Aug 2016 ...Identity Server cannot validate incoming AuthnRequest ACS URL tag when request is unsigned (CVE-2016-5752). Identity Server cannot validate incoming AuthnRequest ACS URL tag when request is unsigned (CVE-2016-5752) This document (7017809) is provided subject

Identity Server XSS vulnerability possible by manipulating the AssertionConsumerService URL in SAMLRequest (CVE-2016-5751) (7017808)
29 Aug 2016 ...Identity Server XSS vulnerability possible by manipulating the AssertionConsumerService URL in SAMLRequest (CVE-2016-5751). Identity Server XSS vulnerability possible by manipulating the AssertionConsumerService URL in SAMLRequest (CVE-2016-5751) This

Multiple Access Manager iManager application URLs prone to Reflected Cross-Site Scripting attack (CVE-2016-5756) (7017813)
29 Aug 2016 ...Multiple Access Manager iManager application URLs prone to Reflected Cross-Site Scripting attack (CVE-2016-5756). Multiple Access Manager iManager application URLs prone to Reflected Cross-Site Scripting attack (CVE-2016-5756) This document (7017813) is

Nessus scan reports in Web Application Potentially Vulnerable to Clickjacking in iManager (CVE-2016-5755) (7017812)
29 Aug 2016 ...Nessus scan reports in Web Application Potentially Vulnerable to Clickjacking in iManager (CVE-2016-5755). Nessus scan reports in Web Application Potentially Vulnerable to Clickjacking in iManager (CVE-2016-5755) This document (7017812) is provided subject

Persistent XSS in GroupWise WebAccess Message View (7017974)
24 Aug 2016 ...Persistent XSS in GroupWise WebAccess Message View. Persistent XSS in GroupWise WebAccess Message View This document (7017974) is provided subject to the disclaimer at the end of this document. Environment Novell GroupWise 2014 R2 Novell GroupWise 2014

Reflected XSS in GroupWise Administration Console (7017973)
24 Aug 2016 ...Reflected XSS in GroupWise Administration Console. Reflected XSS in GroupWise Administration Console This document (7017973) is provided subject to the disclaimer at the end of this document. Environment GroupWise 2014 R2 (up to and including SP1) GroupWise

Cross Site Request Forgery in Filr admin (CVE-2016-1607) (7017786)
22 Jul 2016 ...Cross Site Request Forgery in Filr admin (CVE-2016-1607). Cross Site Request Forgery in Filr admin (CVE-2016-1607) This document (7017786) is provided subject to the disclaimer at the end of this document. Environment Novell Filr 2.0 Novell Filr 1.2 Situation

openSSL security vulnerability in Filr (CVE-2016-2107) (7017793)
22 Jul 2016 ...openSSL security vulnerability in Filr (CVE-2016-2107). openSSL security vulnerability in Filr (CVE-2016-2107) This document (7017793) is provided subject to the disclaimer at the end of this document. Environment Novell Filr 2.0 Situation The AES-NI implementation

Persistent XSS in Filr User Profile (CVE-2016-1609) (7017787)
22 Jul 2016 ...Persistent XSS in Filr User Profile (CVE-2016-1609). Persistent XSS in Filr User Profile (CVE-2016-1609) This document (7017787) is provided subject to the disclaimer at the end of this document. Environment Novell Filr 2.0 Novell Filr 1.2 Situation A

CVE-2015-5970 ZCM ZENworks ChangePassword XPath Injection Information Disclosure Vulnerability (7017240)
13 Jul 2016 ...CVE-2015-5970 ZCM ZENworks ChangePassword XPath Injection Information Disclosure Vulnerability. CVE-2015-5970 ZCM ZENworks ChangePassword XPath Injection Information Disclosure Vulnerability This document (7017240) is provided subject to the disclaimer

Sentinel Server Authentication Bypass and Arbitrary File Download (CVE-2016-1605) (7017803)
7 Jul 2016 ...Sentinel Server Authentication Bypass and Arbitrary File Download (CVE-2016-1605). Sentinel Server Authentication Bypass and Arbitrary File Download (CVE-2016-1605) This document (7017803) is provided subject to the disclaimer at the end of this document.

CVE-2016-1065, ZDI-CAN-3717 Security Vulverability (7017805)
2 Jul 2016 ...CVE-2016-1065, ZDI-CAN-3717 Security Vulverability. CVE-2016-1065, ZDI-CAN-3717 Security Vulverability This document (7017805) is provided subject to the disclaimer at the end of this document. Environment NetIQ Sentinel 7.4.x Sentinel Server Situation

Local privilege escalation via insecure file permissions (CVE-2016-1611) (7017689)
30 Jun 2016 ...Local privilege escalation via insecure file permissions (CVE-2016-1611). Local privilege escalation via insecure file permissions (CVE-2016-1611) This document (7017689) is provided subject to the disclaimer at the end of this document. Environment Novell

26-50 of 108

« prev | next »

Activate & manage products
Open or check status of Service Requests
Download trials & software updates
Access your training
Manage profile & contacts

Edit your Search

Find in Results

Filter Results

Content Type
Date Range
Archive
Apply Filter »

© Copyright Micro Focus or one of its affiliates

 
 

Check this box to also search documents last modified more than 7 years ago