Peaches Posted February 28, 2009 Report Share Posted February 28, 2009 27 February 2009, 16:40 Software update for HP Virtual Rooms Hewlett Packard has eliminated a serious security problem in its HP Virtual Rooms collaboration software and made an update to version 7.0.1 available. According to HP, the defect could allow code to be injected into vulnerable systems over a network. All Windows versions prior to version 7.0.1 are affected. HP does not describe the gap in detail, but does mention that the update also sets the kill bit for the ActiveX control in order to disable it. An attacker may be able to exploit the vulnerability if the a user with Internet Explorer goes to a suitably rigged web page. The vendor recommends that all users of the software update as soon as possible. See also: HP Virtual Rooms Client Running on Windows, Remote Execution of Arbitrary Code, HP advisory (djwm) Heise security: http://www.h-online.com/security/Software-...s--/news/112746 >>>>>>>>>>>>>>>>>>>>>> Quote Link to post Share on other sites
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.