HP USB Keys Shipped with Malware for your Proliant Server

Edwin Groothuis edwin at mavetju.org
Mon Apr 7 21:36:52 UTC 2008


Stumbled over this in my RSS feed this morning:

http://isc.sans.org/diary.html?storyid=4247
http://www.auscert.org.au/render.html?it=9077

===========================================================================
             AUSCERT External Security Bulletin Redistribution

                       ESB-2008.0354 -- [Appliance]
       HP USB Floppy Drive Key (Option) for ProLiant Servers, Local
                              Virus Infection
                               7 April 2008

===========================================================================

[...]

VULNERABILITY SUMMARY
A potential security vulnerability has been identified with two types of
optional HP USB Floppy Drive Keys intended for use with certain ProLiant
servers. This vulnerability could cause a local 'W32.Fakerecy' or
'W32.SillyFDC' virus infection.

[...]


Short story: If you install the USB Floppy Drive Key and run Windows,
you have to check the USB stick for viruses first.


Edwin

-- 
Edwin Groothuis      |            Personal website: http://www.mavetju.org
edwin at mavetju.org    |              Weblog: http://www.mavetju.org/weblog/


More information about the freebsd-proliant mailing list