Article ID: 6382, created on May 28, 2009, last review on May 11, 2014

  • Applies to:
  • H-Sphere 3.3

Symptoms

Security scan on Parallels H-Sphere control panel gives the following vulnerabilities:

OpenSSL Multiple Vulnerabilities < 0.9.8d
OpenSSL ASN.1 Error Denial of Service
OpenSSL PKCS Padding RSA Signature Forgery Vulnerability 

That may course customers can not pass PCI (payment card industry) compliant.

Resolution

Update OpenSSL to the latest available version. Because of Parallels H-Sphere do not include OpenSSL packages, customers should do the update manually, or ask operating system vendor for corresponded support.

f213b9fa8759d57bee5d547445806fe7 6311ae17c1ee52b36e68aaf4ad066387 3fce07d43dd909dcf7cad8a0e8c377eb

Email subscription for changes to this article
Save as PDF