<?xml version="1.0" encoding="UTF-8"?>
<oval_definitions xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix unix-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#linux linux-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#independent independent-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5 oval-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris solaris-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-common-5 oval-common-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux hpux-definitions-schema.xsd" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:sol-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris" xmlns:unix-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix" xmlns:ind-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent" xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:linux-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" xmlns:hpux-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5">
  <generator>
    <oval:schema_version>5.1</oval:schema_version>
    <oval:timestamp>2007-01-29T12:57:13.488-05:00</oval:timestamp>
    <oval:product_name>The MITRE Corporation</oval:product_name>
  </generator>
  <definitions>
    <definition id="oval:org.mitre.oval:def:2665" version="1" class="vulnerability">
      <metadata>
        <title>Data Leak in NIC</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Sun Am7990 Ethernet Driver</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0001" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0001"/>
        <description>Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to obtain information from previous packets or kernel memory by using malformed packets, as demonstrated by Etherleak.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <modified comment="Fixed obj:424: set operation to pattern match on filename.  Removed pattern match from path." date="2007-01-22T14:01:00.764-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
          </dates>
          <status>DRAFT</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 112604-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:497"/>
          <criterion comment="Patch 112609-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:496"/>
          <criterion comment="Patch 115172-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:495"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Lance Ethernet (le) interface configured to start" negate="false" test_ref="oval:org.mitre.oval:tst:494"/>
          <criterion comment="Lance Ethernet interface in use" negate="false" test_ref="oval:org.mitre.oval:tst:493"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:34" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 whodo Buffer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>whodo</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-1076" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-1076"/>
        <description>Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified comment="Fixed obj:1742: moved regexp terminal anchor from filename to path." date="2007-01-22T17:29:00.420-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-01-22T17:30:41.689-05:00">INTERIM</status_change>
            <modified comment="Replaced reference to obj:1740 with obj:1742, which is more correct, and fixed test comment." date="2007-01-22T17:59:00.207-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified comment="Fixed tst:3041: Replaced reference to obj:1740 with obj:1742, which is more correct, and fixed test comment.  Note previous edit was to tst:3040." date="2007-01-22T18:01:00.910-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified comment="Fixed criterion comments." date="2007-01-22T18:10:00.596-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File whodo exists" negate="false" test_ref="oval:org.mitre.oval:tst:3043"/>
          <criterion comment="Patch 111600-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3042"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File whodo SUID and executable">
            <criterion comment="File whodo SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3041"/>
            <criterion comment="File whodo oexec set" negate="false" test_ref="oval:org.mitre.oval:tst:3040"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3465" version="1" class="vulnerability">
      <metadata>
        <title>SunOS 5.9: ufs and fsck patch</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Solaris Volume Manager (SVM)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1346" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1346"/>
        <description>The Sun Solaris Volume Manager (SVM) on Solaris 9 allows local users to cause a denial of service (kernel panic) via a malformed probe request to the SVM.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T05:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T05:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T05:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T05:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Corrected operation on line element of textfilecontent_object. Operation must be pattern match." date="2007-01-04T08:52:00.308-05:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2007-01-04T08:54:46.519-05:00">INTERIM</status_change>
            <modified comment="Updated obj:374: set operation to pattern match on filename." date="2007-01-22T13:52:00.664-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Patch 113073-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:426"/>
          <criterion comment="Solaris Volume Manager package installed" negate="false" test_ref="oval:org.mitre.oval:tst:425"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="svm.init init script exists" negate="false" test_ref="oval:org.mitre.oval:tst:424"/>
          <criterion comment="/etc/vfstab is configured with SVM devices" negate="false" test_ref="oval:org.mitre.oval:tst:423"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:47" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 whodo Buffer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>whodo</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-1076" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-1076"/>
        <description>Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified comment="Fixed obj:1742: moved regexp terminal anchor from filename to path." date="2007-01-22T17:29:00.420-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-01-22T17:30:41.522-05:00">INTERIM</status_change>
            <modified comment="Replaced reference to obj:1740 with obj:1742, which is more correct, and fixed test comment." date="2007-01-22T17:59:00.207-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified comment="Fixed tst:3041: Replaced reference to obj:1740 with obj:1742, which is more correct, and fixed test comment.  Note previous edit was to tst:3040." date="2007-01-22T18:01:00.910-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified comment="Fixed criterion comments." date="2007-01-22T18:10:00.528-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File whodo exists" negate="false" test_ref="oval:org.mitre.oval:tst:3043"/>
          <criterion comment="Patch 111826-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3018"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File whodo SUID and executable">
            <criterion comment="File whodo SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3041"/>
            <criterion comment="File whodo oexec set" negate="false" test_ref="oval:org.mitre.oval:tst:3040"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:48" version="2" class="vulnerability">
      <metadata>
        <title>Solaris 7 AdminTool Media Installation Path Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Admintool</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0088" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0088"/>
        <description>Buffer overflow in admintool in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long media installation path.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2006-06-13T02:02:00.000-04:00" comment="modified uft-15 - admintool is either /bin/admintool or /usr/bin/admintool (or both).  Regular expression had been ^.*/bin/admintool$, which could cause arbitrary-depth search.  Changed to ^(/usr)?/bin/admintool$, which bounds the search properly.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2006-06-13T02:20:00.000-04:00" comment="modified upt-845 - admintool is either /bin/admintool or /usr/bin/admintool (or both). Regular expression had been ^.*/bin/admintool$, which could cause arbitrary-depth search. Changed to ^(/usr)?/bin/admintool$, which bounds the search properly.  Also modified to test for both SUID and OEXEC bits, so a second test is not needed.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2006-06-13T02:22:00.000-04:00" comment="Removed compound test for &quot;admintool SUID and executable&quot; because new version of upt-845 does both.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-06-14T07:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:28.137-04:00">ACCEPTED</status_change>
            <modified comment="Fixed obj:1726, which had been badly mangled during conversion from OVAL 4.2 to 5.0.  Operation set to pattern match on path, and terminal regexp anchor moved from filename to path." date="2007-01-22T16:24:00.728-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-01-22T16:26:01.244-05:00">INTERIM</status_change>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File admintool exists" negate="false" test_ref="oval:org.mitre.oval:tst:3017"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="File admintool SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3016"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:60" version="2" class="vulnerability">
      <metadata>
        <title>Solaris 8 AdminTool Media Installation Path Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>Admintool</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0088" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0088"/>
        <description>Buffer overflow in admintool in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long media installation path.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2006-06-13T02:02:00.000-04:00" comment="modified uft-15 - admintool is either /bin/admintool or /usr/bin/admintool (or both).  Regular expression had been ^.*/bin/admintool$, which could cause arbitrary-depth search.  Changed to ^(/usr)?/bin/admintool$, which bounds the search properly.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2006-06-13T02:20:00.000-04:00" comment="modified upt-845 - admintool is either /bin/admintool or /usr/bin/admintool (or both). Regular expression had been ^.*/bin/admintool$, which could cause arbitrary-depth search. Changed to ^(/usr)?/bin/admintool$, which bounds the search properly.  Also modified to test for both SUID and OEXEC bits, so a second test is not needed.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2006-06-13T02:23:00.000-04:00" comment="Removed compound test for &quot;admintool SUID and executable&quot; because new version of upt-845 does both.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-06-14T07:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:32.137-04:00">ACCEPTED</status_change>
            <modified comment="Fixed obj:1726, which had been badly mangled during conversion from OVAL 4.2 to 5.0.  Operation set to pattern match on path, and terminal regexp anchor moved from filename to path." date="2007-01-22T16:24:00.728-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-01-22T16:26:01.046-05:00">INTERIM</status_change>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File admintool exists" negate="false" test_ref="oval:org.mitre.oval:tst:3017"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="File admintool SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3016"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:662" version="1" class="vulnerability">
      <metadata>
        <title>lpsched Local System Corruption Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0227" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0227"/>
        <description>Multiple unspecified vulnerabilities in lpsched in Sun Solaris 8, 9, and 10 allow local users to delete arbitrary files or disable the LP print service via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-16T12:05:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-25T07:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Fixed obj:1394 to more correctly look for subdirectories under /etc/lp/printers." date="2007-01-22T16:00:00.391-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-01-22T16:01:01.488-05:00">INTERIM</status_change>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109320-17 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2464"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109321-17 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2462"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 113329-16 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2461"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 114980-17 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2460"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (sparc) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 120467-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2458"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102033 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 120468-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2457"/>
        </criteria>
        <criterion comment="Target is configured as a print server" negate="false" test_ref="oval:org.mitre.oval:tst:2456"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:67" version="2" class="vulnerability">
      <metadata>
        <title>Solaris 8 admintool Local Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>Admintool</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0089" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0089"/>
        <description>Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via long arguments to (1) the -d command line option, or (2) the PRODVERS argument in the .cdtoc file.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2006-06-13T02:02:00.000-04:00" comment="modified uft-15 - admintool is either /bin/admintool or /usr/bin/admintool (or both).  Regular expression had been ^.*/bin/admintool$, which could cause arbitrary-depth search.  Changed to ^(/usr)?/bin/admintool$, which bounds the search properly.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2006-06-13T02:20:00.000-04:00" comment="modified upt-845 - admintool is either /bin/admintool or /usr/bin/admintool (or both). Regular expression had been ^.*/bin/admintool$, which could cause arbitrary-depth search. Changed to ^(/usr)?/bin/admintool$, which bounds the search properly.  Also modified to test for both SUID and OEXEC bits, so a second test is not needed.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2006-06-13T02:24:00.000-04:00" comment="Removed compound test for &quot;admintool SUID and executable&quot; because new version of upt-845 does both.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-06-14T07:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:34.346-04:00">ACCEPTED</status_change>
            <modified comment="Fixed obj:1726, which had been badly mangled during conversion from OVAL 4.2 to 5.0.  Operation set to pattern match on path, and terminal regexp anchor moved from filename to path." date="2007-01-22T16:24:00.728-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-01-22T16:26:01.442-05:00">INTERIM</status_change>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File admintool exists" negate="false" test_ref="oval:org.mitre.oval:tst:3017"/>
          <criterion comment="Patch 110453-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2987"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="File admintool SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3016"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:68" version="2" class="vulnerability">
      <metadata>
        <title>Solaris 7 admintool Local Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Admintool</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0089" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0089"/>
        <description>Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via long arguments to (1) the -d command line option, or (2) the PRODVERS argument in the .cdtoc file.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2006-06-13T02:02:00.000-04:00" comment="modified uft-15 - admintool is either /bin/admintool or /usr/bin/admintool (or both).  Regular expression had been ^.*/bin/admintool$, which could cause arbitrary-depth search.  Changed to ^(/usr)?/bin/admintool$, which bounds the search properly.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2006-06-13T02:20:00.000-04:00" comment="modified upt-845 - admintool is either /bin/admintool or /usr/bin/admintool (or both). Regular expression had been ^.*/bin/admintool$, which could cause arbitrary-depth search. Changed to ^(/usr)?/bin/admintool$, which bounds the search properly.  Also modified to test for both SUID and OEXEC bits, so a second test is not needed.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2006-06-13T02:25:00.000-04:00" comment="Removed compound test for &quot;admintool SUID and executable&quot; because new version of upt-845 does both.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-06-14T07:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:34.775-04:00">ACCEPTED</status_change>
            <modified comment="Fixed obj:1726, which had been badly mangled during conversion from OVAL 4.2 to 5.0.  Operation set to pattern match on path, and terminal regexp anchor moved from filename to path." date="2007-01-22T16:24:00.728-05:00">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2007-01-22T16:26:00.857-05:00">INTERIM</status_change>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File admintool exists" negate="false" test_ref="oval:org.mitre.oval:tst:3017"/>
          <criterion comment="Patch 108721-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2986"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="File admintool SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3016"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:940" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel ISO9660 File System Component BO</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0109" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0109"/>
        <description>Buffer overflow in the ISO9660 file system component for Linux kernel 2.4.x, 2.5.x and 2.6.x, allows local users with physical access to overflow kernel memory and execute arbitrary code via a malformed CD containing a long symbolic link entry.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="kernel versions">
            <criterion comment="kernel version is less than 2.4.21-9.0.3.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1436"/>
            <criterion comment="kernel-smp version is less than 2.4.21-9.0.3.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1435"/>
            <criterion comment="kernel-hugemem version is less than 2.4.21-9.0.3.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1434"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/bin/mount is world-executable AND Set-UID">
            <criterion comment="/bin/mount is world-executable AND Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:1433"/>
            <criterion comment="/bin/mount is world-executable AND Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:1432"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1245" version="1" class="vulnerability">
      <metadata>
        <title>gedit Format String Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>gedit</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1686" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1686"/>
        <description>Format string vulnerability in gedit 2.10.2 may allow attackers to cause a denial of service (application crash) via a bin file with format string specifiers in the filename.  NOTE: while this issue is triggered on the command line by the gedit user, it has been reported that web browsers and email clients could be configured to provide a file name as an argument to gedit, so there is a valid attack that crosses security boundaries.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Corrected version string in ste:929. Implemented by Jon Baker of The MITRE Corporation." date="2007-01-12T13:34:00.798-05:00">
              <contributor organization="Independent Contributor">Bob Towbes</contributor>
            </modified>
            <status_change date="2007-01-12T13:37:39.951-05:00">INTERIM</status_change>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="gedit RPM earlier than 1:2.2.2-4rhel3" negate="false" test_ref="oval:org.mitre.oval:tst:1042"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/gedit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1041"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1273" version="1" class="vulnerability">
      <metadata>
        <title>Solaris SAdmin Client Credentials Remote Administrative Access Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sadmin</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0722" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0722"/>
        <description>The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attackers to spoof Solstice AdminSuite clients and gain root privileges via a certain sequence of RPC packets.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-15T02:06:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-15T02:21:00.000-04:00" comment="Added check for sadmind called with strong authentication">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Corrected datatype on version element of patch state. Datatype must be int." date="2007-01-04T08:56:00.454-05:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2007-01-04T08:58:16.556-05:00">INTERIM</status_change>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="System and Network Administration Framework Installed" negate="false" test_ref="oval:org.mitre.oval:tst:1024"/>
          <criterion comment="Patch 116457-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1022"/>
          <criterion comment="Patch 116442-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1021"/>
          <criterion comment="Patch 116454-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1020"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criterion comment="inetd.conf contains sadmind" negate="false" test_ref="oval:org.mitre.oval:tst:1023"/>
          <criterion comment="Sadmin called using strong authentication" negate="true" test_ref="oval:org.mitre.oval:tst:1019"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1436" version="1" class="vulnerability">
      <metadata>
        <title>Solaris CDE DTLogin XDMCP Parser Remote Double Free Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0368" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0368"/>
        <description>Double-free vulnerability in dtlogin in CDE on Solaris, HP-UX, and other operating systems allows remote attackers to execute arbitrary code via a crafted XDMCP packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:37:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-12T12:47:00.000-04:00" comment="Added patch 107180-31 test for Solaris 7.  Changed vulnerable software test logic a little">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-13T01:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-10-27T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-11-17T10:00:00.000-04:00">ACCEPTED</status_change>
            <modified comment="Corrected datatype on base element. Datatype must be int." date="2007-01-04T08:54:00.038-05:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
            <status_change date="2007-01-04T08:56:47.173-05:00">INTERIM</status_change>
            <modified comment="Corrected datatype on version element in ste:841. Datatype must be int." date="2007-01-04T09:48:00.458-05:00">
              <contributor organization="The MITRE Corporation">Jonathan Baker</contributor>
            </modified>
          </dates>
          <status>INTERIM</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="File /usr/dt/bin/dtlogin exists" negate="false" test_ref="oval:org.mitre.oval:tst:939"/>
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 108919-21 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:937"/>
          <criterion comment="Patch 112807-09 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:936"/>
          <criterion comment="Patch 107180-31 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:935"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="dtlogin running" negate="false" test_ref="oval:org.mitre.oval:tst:938"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:70" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 CDE dtspcd Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>dtspcd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0803" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0803"/>
        <description>Buffer overflow in the client connection routine of libDtSvc.so.1 in CDE Subprocess Control Service (dtspcd) allows remote attackers to execute arbitrary commands.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-08-23T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File dtspcd exists" negate="false" test_ref="oval:org.mitre.oval:tst:2983"/>
          <criterion comment="Patch 108949-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2982"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains dtspcd" negate="false" test_ref="oval:org.mitre.oval:tst:2981"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File dtspcd executable">
            <criterion comment="File dtspcd executable" negate="false" test_ref="oval:org.mitre.oval:tst:2980"/>
            <criterion comment="File dtspcd executable" negate="false" test_ref="oval:org.mitre.oval:tst:2979"/>
            <criterion comment="File dtspcd executable" negate="false" test_ref="oval:org.mitre.oval:tst:2978"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:74" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 CDE dtspcd Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>dtspcd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0803" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0803"/>
        <description>Buffer overflow in the client connection routine of libDtSvc.so.1 in CDE Subprocess Control Service (dtspcd) allows remote attackers to execute arbitrary commands.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File dtspcd exists" negate="false" test_ref="oval:org.mitre.oval:tst:2983"/>
          <criterion comment="Patch 106934-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2974"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains dtspcd" negate="false" test_ref="oval:org.mitre.oval:tst:2981"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File dtspcd executable">
            <criterion comment="File dtspcd executable" negate="false" test_ref="oval:org.mitre.oval:tst:2980"/>
            <criterion comment="File dtspcd executable" negate="false" test_ref="oval:org.mitre.oval:tst:2979"/>
            <criterion comment="File dtspcd executable" negate="false" test_ref="oval:org.mitre.oval:tst:2978"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:860" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Linux Kernel do_mremap Denial of Service Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0985" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0985"/>
        <description>The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Configuration">
          <criterion comment="kernel version is less than 2.4.20-28.9" negate="false" test_ref="oval:org.mitre.oval:tst:1560"/>
          <criterion comment="kernel-smp version is less than 2.4.20-28.9" negate="false" test_ref="oval:org.mitre.oval:tst:1559"/>
          <criterion comment="kernel-bigmem version is less than 2.4.20-28.9" negate="false" test_ref="oval:org.mitre.oval:tst:1558"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:867" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Linux Kernel do_mremap Denial of Service Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0985" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0985"/>
        <description>The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Configuration">
          <criterion comment="kernel version is less than 2.4.21-4.0.2.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1550"/>
          <criterion comment="kernel-smp version is less than 2.4.21-4.0.2.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1549"/>
          <criterion comment="kernel-bigmem version is less than 2.4.21-4.0.2.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1548"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1001" version="1" class="vulnerability">
      <metadata>
        <title>Integer overflow in the "Max-dotdot" CVS protocol command</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>CVS</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0417" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0417"/>
        <description>Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-07-21T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-08-04T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="cvs rpm version prior to 1.11.2-24 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1347"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/cvs is executable">
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1381"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1380"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1379"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1003" version="1" class="vulnerability">
      <metadata>
        <title>CVS serve_notify Improper Handling of Empty Data Lines</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>CVS</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0418" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0418"/>
        <description>serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote attackers to perform an "out-of-bounds" write for a single byte to execute arbitrary code or modify critical program data.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-07-21T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-08-04T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="cvs rpm version prior to 1.11.2-24 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1347"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/cvs is executable">
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1381"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1380"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1379"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1006" version="1" class="vulnerability">
      <metadata>
        <title>SquirrelMail Cross-site Scripting Vulnerability I</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>SquirrelMail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0519" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0519"/>
        <description>Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.2 allow remote attackers to execute arbitrary script as other users and possibly steal authentication information via multiple attack vectors, including the mailbox parameter in compose.php.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-07-21T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-08-11T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="squirrelmail rpm version prior to 1.4.3-0.e3.1 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1327"/>
          <criterion comment="php rpm is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1326"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1630"/>
          <criterion comment="/etc/httpd/modules/libphp4.so exists" negate="false" test_ref="oval:org.mitre.oval:tst:1325"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:101" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal 0-Length Buffer Size Vulnerability in tvb_get_nstring0()</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0431" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0431"/>
        <description>The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length buffer size, with unknown consequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="ethereal version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2985"/>
          <criterion comment="ethereal-gnome version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2984"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1012" version="1" class="vulnerability">
      <metadata>
        <title>SquirrelMail Cross-site Scripting Vulnerability II</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>SquirrelMail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0520" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0520"/>
        <description>Cross-site scripting (XSS) vulnerability in mime.php for SquirrelMail before 1.4.3 allows remote attackers to insert arbitrary HTML and script via the content-type mail header, as demonstrated using read_body.php.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-07-21T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-08-11T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="squirrelmail rpm version prior to 1.4.3-0.e3.1 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1327"/>
          <criterion comment="php rpm is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1326"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1630"/>
          <criterion comment="/etc/httpd/modules/libphp4.so exists" negate="false" test_ref="oval:org.mitre.oval:tst:1325"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1013" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Kernel Real Time Clock Data Leakage</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0984" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0984"/>
        <description>Real time clock (RTC) routines in Linux kernel 2.4.23 and earlier do not properly initialize their structures, which could leak kernel data to user space.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.21-15.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1342"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1017" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Kernel R128 DRI Limits Checking Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0003" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0003"/>
        <description>Unknown vulnerability in Linux kernel before 2.4.22 allows local users to gain privileges, related to "R128 DRI limits checking."</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.21-15.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1315"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1033" version="1" class="vulnerability">
      <metadata>
        <title>SquirrelMail SQL Injection Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>SquirrelMail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0521" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0521"/>
        <description>SQL injection vulnerability in SquirrelMail before 1.4.3 RC1 allows remote attackers to execute unauthorized SQL statements, with unknown impact, probably via abook_database.php.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-07-21T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-08-11T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="squirrelmail rpm version prior to 1.4.3-0.e3.1 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1327"/>
          <criterion comment="php rpm is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1326"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1630"/>
          <criterion comment="/etc/httpd/modules/libphp4.so exists" negate="false" test_ref="oval:org.mitre.oval:tst:1325"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1035" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Kernel ncp_lookup Function BO</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0010" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0010"/>
        <description>Stack-based buffer overflow in the ncp_lookup function for ncpfs in Linux kernel 2.4.x allows local users to gain privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.21-15.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1315"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1038" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Fetchmail Buffer Overflow via Long UIDL Responses</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>fetchmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2335" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2335"/>
        <description>Buffer overflow in the POP3 client in Fetchmail before 6.2.5.2 allows remote POP3 servers to cause a denial of service and possibly execute arbitrary code via long UIDL responses.  NOTE: a typo in an advisory accidentally used the wrong CVE identifier for the Fetchmail issue. This is the correct identifier.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="fetchmail RPM older than 0:6.2.0-3.el3.1" negate="false" test_ref="oval:org.mitre.oval:tst:1262"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/fetchmail is executable by any user" negate="false" test_ref="oval:org.mitre.oval:tst:1261"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1042" version="1" class="vulnerability">
      <metadata>
        <title>Malicious CVS Server RCS diff File Vulnerability in CVS Client</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0180" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0180"/>
        <description>The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="cvs version is less than 1.11.2-18" negate="false" test_ref="oval:org.mitre.oval:tst:1255"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/cvs is executable">
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1381"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1380"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1379"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:106" version="1" class="vulnerability">
      <metadata>
        <title>Various Ethereal Dissector Vulnerabilities</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0432" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0432"/>
        <description>Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in the (1) BGP, (2) WTP, (3) DNS, (4) 802.11, (5) ISAKMP, (6) WSP, (7) CLNP, (8) ISIS, and (9) RMI dissectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="ethereal version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2985"/>
          <criterion comment="ethereal-gnome version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2984"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1060" version="1" class="vulnerability">
      <metadata>
        <title>Directory Traversal Vulnerability in CVS Server</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0405" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0405"/>
        <description>CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client requests, a different vulnerability than CVE-2004-0180.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="cvs version is less than 1.11.2-18" negate="false" test_ref="oval:org.mitre.oval:tst:1255"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/cvs is executable">
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1381"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1380"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1379"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1065" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Format String Vulnerabilities in neon and Dependent Products</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0179" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0179"/>
        <description>Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-10T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-25T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T04:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-09-20T04:00:00.000-04:00" comment="modified upt-36 - Fixed typo: oofice should have been ooffice">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2005-09-20T04:01:00.000-04:00" comment="modified upt-37 - Fixed typo--oofice should have been ooffice">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2005-09-20T04:02:00.000-04:00" comment="modified upt-38 - Fixed typo--oofice should have been ooffice">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <modified date="2005-09-20T04:03:00.000-04:00" comment="modified cmp-940 - Fixed comment typo--oofice should have been ooffice">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2005-09-21T01:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="openoffice version is less than 1.1.0-15.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1223"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="OpenOffice Permissions">
            <criteria operator="OR" comment="/usr/bin/oocalc is executable">
              <criterion comment="/usr/bin/oocalc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1222"/>
              <criterion comment="/usr/bin/oocalc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1221"/>
              <criterion comment="/usr/bin/oocalc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1220"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/oodraw is executable">
              <criterion comment="/usr/bin/oodraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1219"/>
              <criterion comment="/usr/bin/oodraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1218"/>
              <criterion comment="/usr/bin/oodraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1217"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ooffice is executable">
              <criterion comment="/usr/bin/ooffice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1216"/>
              <criterion comment="/usr/bin/ooffice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1215"/>
              <criterion comment="/usr/bin/ooffice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1214"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ooimpress is executable">
              <criterion comment="/usr/bin/ooimpress is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1213"/>
              <criterion comment="/usr/bin/ooimpress is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1212"/>
              <criterion comment="/usr/bin/ooimpress is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1211"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/oowriter is executable">
              <criterion comment="/usr/bin/oowriter is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1210"/>
              <criterion comment="/usr/bin/oowriter is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1209"/>
              <criterion comment="/usr/bin/oowriter is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1208"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:107" version="1" class="vulnerability">
      <metadata>
        <title>Ximian Evolution Mail User Agent uuencoded header Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ximian Evolution</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0128" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0128"/>
        <description>The try_uudecoding function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malicious uuencoded (UUE) header, possibly triggering a heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="evolution version is less than 1.2.2-5" negate="false" test_ref="oval:org.mitre.oval:tst:2939"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1073" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Firefox External App Code Acceptance Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2267" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2267"/>
        <description>Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:108" version="1" class="vulnerability">
      <metadata>
        <title>Ximian Evolution User Agent Multiple uuencoding Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ximian Evolution</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0129" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0129"/>
        <description>Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumption) via a mail message that is uuencoded multiple times.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="evolution version is less than 1.2.2-5" negate="false" test_ref="oval:org.mitre.oval:tst:2939"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1081" version="1" class="vulnerability">
      <metadata>
        <title>gzip Argument Sanitation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>zgrep</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0758" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0758"/>
        <description>zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="bzip2 RPM earlier than 0:1.0.2-11.EL3.4" negate="false" test_ref="oval:org.mitre.oval:tst:2386"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/bzgrep is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1183"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1086" version="1" class="vulnerability">
      <metadata>
        <title>PostgreSQL tsearch2 "internal" Functions Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>postgresql</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1410" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1410"/>
        <description>The tsearch2 module in PostgreSQL 7.4 through 8.0.x declares the (1) dex_init, (2) snb_en_init, (3) snb_ru_init, (4) spell_init, and (5) syn_init functions as "internal" even when they do not take an internal argument, which allows attackers to cause a denial of service (application crash) and possibly have other impacts via SQL commands that call other functions that accept internal arguments.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-27T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="rh-postgresql-contrib rpm is earlier than 0:7.3.10-1" negate="false" test_ref="oval:org.mitre.oval:tst:1180"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="postmaster (the PostgreSQL master daemon) is running" negate="false" test_ref="oval:org.mitre.oval:tst:2432"/>
          <criterion comment="/usr/lib/pgsql/tsearch.so (PostgreSQL's tsearch module) exists as a regular file" negate="false" test_ref="oval:org.mitre.oval:tst:1179"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1107" version="1" class="vulnerability">
      <metadata>
        <title>gzip zgrep Sanitation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>gzip</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0758" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0758"/>
        <description>zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-22T12:38:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="gzip RPM earlier than 0:1.3.3-12rhel3" negate="false" test_ref="oval:org.mitre.oval:tst:2667"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/zgrep is executable by any user" negate="false" test_ref="oval:org.mitre.oval:tst:1162"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:111" version="1" class="vulnerability">
      <metadata>
        <title>Ximian Evolution MIME-encoded Image Buffer Overflow</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ximian Evolution</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0130" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0130"/>
        <description>The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="evolution version is less than 1.2.2-5" negate="false" test_ref="oval:org.mitre.oval:tst:2939"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1117" version="1" class="vulnerability">
      <metadata>
        <title>mlock Memory Page Tracking Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0491" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0491"/>
        <description>The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which allows local users to mlock more memory than specified by the rlimit.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="OR" comment="kernel, kernel-smp or kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL">
          <criterion comment="kernel RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1148"/>
          <criterion comment="kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1147"/>
          <criterion comment="kernel-smp RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1146"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:112" version="1" class="vulnerability">
      <metadata>
        <title>GDM Examine Errors Symlink Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>GDM</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0547" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0547"/>
        <description>GDM before 2.4.1.6, when using the "examine session errors" feature, allows local users to read arbitrary files via a symlink attack on the ~/.xsession-errors file.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-04T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="gdm version is less than 2.4.1.3-5.1" negate="false" test_ref="oval:org.mitre.oval:tst:2936"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1122" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel elf_core_dump() Buffer Overflow</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1263" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1263"/>
        <description>The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.12-rc4 allows local users to execute arbitrary code via an ELF binary that, in certain conditions involving the create_elf_tables function, causes a negative length argument to pass a signed integer comparison, leading to a buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="OR" comment="kernel, kernel-smp or kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL">
          <criterion comment="kernel RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1148"/>
          <criterion comment="kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1147"/>
          <criterion comment="kernel-smp RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1146"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1124" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Fetchmail Buffer Overflow via Long UIDL Responses</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>fetchmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2335" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2335"/>
        <description>Buffer overflow in the POP3 client in Fetchmail before 6.2.5.2 allows remote POP3 servers to cause a denial of service and possibly execute arbitrary code via long UIDL responses.  NOTE: a typo in an advisory accidentally used the wrong CVE identifier for the Fetchmail issue. This is the correct identifier.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="fetchmail RPM earlier than 0:6.2.5-6.el4.2" negate="false" test_ref="oval:org.mitre.oval:tst:1144"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/fetchmail is executable by any user" negate="false" test_ref="oval:org.mitre.oval:tst:1261"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:113" version="1" class="vulnerability">
      <metadata>
        <title>X Display Manager Control Protocol Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>GDM</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0548" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0548"/>
        <description>The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) when a chosen host expires, a different issue than CVE-2003-0549.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-04T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="gdm version is less than 2.4.1.3-5.1" negate="false" test_ref="oval:org.mitre.oval:tst:2936"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1139" version="1" class="vulnerability">
      <metadata>
        <title>Telnet Client Information Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>telnet</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0488" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0488"/>
        <description>Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="telnet RPM earlier than 1:0.17-20.EL3.3" negate="false" test_ref="oval:org.mitre.oval:tst:1131"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/telnet is executable by any user" negate="false" test_ref="oval:org.mitre.oval:tst:1130"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1154" version="1" class="vulnerability">
      <metadata>
        <title>bzip2 Arbitrary File Permission Modification Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>bzip2</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0953" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0953"/>
        <description>Race condition in bzip2 1.0.2 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by bzip2 after the decompression is complete.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="bzip2 RPM earlier than 0:1.0.2-11.EL3.4" negate="false" test_ref="oval:org.mitre.oval:tst:2386"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/bzip2 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2385"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1169" version="1" class="vulnerability">
      <metadata>
        <title>gzip Hard Link Attack</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>gzip</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0988" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0988"/>
        <description>Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-22T12:38:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="gzip RPM earlier than 0:1.3.3-12rhel3" negate="false" test_ref="oval:org.mitre.oval:tst:2667"/>
        </criteria>
        <criteria comment="Configuration section" operator="OR">
          <criterion comment="/usr/bin/gunzip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2665"/>
          <criterion comment="/usr/bin/gzip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2666"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1172" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Firefox External App Code Acceptance Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2267" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2267"/>
        <description>Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1173" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Buffer Overflows in libXML2</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>libxml2</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0989" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0989"/>
        <description>Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code via (1) a long FTP URL that is not properly handled by the xmlNanoFTPScanURL function, (2) a long proxy URL containing FTP data that is not properly handled by the xmlNanoFTPScanProxy function, and other overflows related to manipulation of DNS length values, including (3) xmlNanoFTPConnect, (4) xmlNanoHTTPConnectHost, and (5) xmlNanoHTTPConnectHost.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-27T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="OR" comment="libxml or libxml-devel RPM is earlier than 1:1.8.17-9.2">
          <criterion comment="libxml RPM is earlier than 1:1.8.17-9.2" negate="false" test_ref="oval:org.mitre.oval:tst:1102"/>
          <criterion comment="libxml-devel RPM is earlier than 1:1.8.17-9.2" negate="false" test_ref="oval:org.mitre.oval:tst:1101"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1195" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Buffer Overflows in libgd</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>libgd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0941" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0941"/>
        <description>Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of vulnerabilities than CVE-2004-0990.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-27T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="AND" comment="libgd or libgd-devel RPM is earlier than 0:1.8.4-12.3.1">
          <criterion comment="libgd RPM is earlier than 0:1.8.4-12.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:1085"/>
          <criterion comment="libgd-devel RPM is earlier than 0:1.8.4-12.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:1084"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1225" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel shmctl() Memory Swap Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0176" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0176"/>
        <description>The shmctl function in Linux 2.6.9 and earlier allows local users to unlock the memory of other processes, which could cause sensitive memory to be swapped to disk, which could allow it to be read by other users once it has been released.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="OR" comment="kernel, kernel-smp or kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL">
          <criterion comment="kernel RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1148"/>
          <criterion comment="kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1147"/>
          <criterion comment="kernel-smp RPM earlier than 0:2.4.21-32.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1146"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1226" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Improper Handling of Synthetic Events in Mozilla</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2260" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2260"/>
        <description>The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1242" version="1" class="vulnerability">
      <metadata>
        <title>sudo Symlink Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>sudo</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1993" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1993"/>
        <description>Race condition in sudo 1.3.1 up to 1.6.8p8, when the ALL pseudo-command is used after a user entry in the sudoers file, allows local users to gain privileges via a symlink attack.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <notes>
        <note>It appears that we can't parse the vulnerable configuration condition (an ALL in the second field of a line after a line that has no ALL in the second field) with our existing regexp.</note>
      </notes>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="sudo RPM earlier than 0:1.6.7p5-1.1" negate="false" test_ref="oval:org.mitre.oval:tst:1046"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/sudoers exists" negate="false" test_ref="oval:org.mitre.oval:tst:1045"/>
          <criterion comment="/usr/bin/sudo is executable by everyone" negate="false" test_ref="oval:org.mitre.oval:tst:1044"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1258" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Firefox and Mozilla DOM Node Spoofing</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2269" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2269"/>
        <description>Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing").</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1260" version="1" class="vulnerability">
      <metadata>
        <title>Integer Overflow in libgd2</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>libgd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0990" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0990"/>
        <description>Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-2004-0941.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-27T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="AND" comment="libgd or libgd-devel RPM is earlier than 0:1.8.4-12.3.1">
          <criterion comment="libgd RPM is earlier than 0:1.8.4-12.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:1085"/>
          <criterion comment="libgd-devel RPM is earlier than 0:1.8.4-12.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:1084"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1268" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Firefox and Mozilla Javascript Dialog Box Spoofing</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2268" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2268"/>
        <description>Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1281" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Firefox InstallTrigger Callback Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2263" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2263"/>
        <description>The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:129" version="1" class="vulnerability">
      <metadata>
        <title>GDM X Display Manager Authorization Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>GDM</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0549" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0549"/>
        <description>The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) via a short authorization key name.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-04T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="gdm version is less than 2.4.1.3-5.1" negate="false" test_ref="oval:org.mitre.oval:tst:2936"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1311" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Firefox InstallTrigger Callback Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2263" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2263"/>
        <description>The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1313" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Firefox and Mozilla Javascript Dialog Box Spoofing</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2268" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2268"/>
        <description>Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:133" version="1" class="vulnerability">
      <metadata>
        <title>GNU Ghostscript -dSAFER Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>GNU Ghostscript</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0354" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0354"/>
        <description>Unknown vulnerability in GNU Ghostscript before 7.07 allows attackers to execute arbitrary commands, even when -dSAFER is enabled, via a PostScript file that causes the commands to be executed from a malicious print job.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="ghostscript version is less than 7.05-32.1" negate="false" test_ref="oval:org.mitre.oval:tst:2911"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/gs is executable">
            <criterion comment="/usr/bin/gs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2910"/>
            <criterion comment="/usr/bin/gs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2909"/>
            <criterion comment="/usr/bin/gs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2908"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1347" version="1" class="vulnerability">
      <metadata>
        <title>FreeRADIUS Ascend-Send-Secret Server Crash</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>FreeRADIUS</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0938" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0938"/>
        <description>FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (server crash) by sending an Ascend-Send-Secret attribute without the required leading packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-11-22T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="FreeRADIUS rpm older than 1.0.1-1" negate="false" test_ref="oval:org.mitre.oval:tst:974"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="radiusd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:973"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1348" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 XBL Script Security Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2261" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2261"/>
        <description>Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts even when Javascript has been disabled, which makes it easier for remote attackers to bypass such protection.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:135" version="1" class="vulnerability">
      <metadata>
        <title>GnuPG Invalid User ID Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>GnuPG</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0255" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0255"/>
        <description>The key validation code in GnuPG before 1.2.2 does not properly determine the validity of keys with multiple user IDs and assigns the greatest validity of the most valid user ID, which prevents GnuPG from warning the encrypting user when a user ID does not have a trusted path.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-19T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="gnupg version is less than 1.2.1-4" negate="false" test_ref="oval:org.mitre.oval:tst:2901"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/gnupg is executable">
            <criterion comment="/usr/bin/gnupg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2900"/>
            <criterion comment="/usr/bin/gnupg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2899"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:138" version="1" class="vulnerability">
      <metadata>
        <title>Evolution GtkHTML DoS via Malformed Message</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>GtkHTML</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0133" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0133"/>
        <description>GtkHTML, as included in Evolution before 1.2.4, allows remote attackers to cause a denial of service (crash) via certain malformed messages.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-02T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="gtkhtml version is less than 1.1.9-0.9" negate="false" test_ref="oval:org.mitre.oval:tst:2897"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1415" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Mozilla top.focus() Cross-Site Scripting Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2266" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2266"/>
        <description>Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:148" version="1" class="vulnerability">
      <metadata>
        <title>Evolution GtkHTML DoS via null Pointer Dereference</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>GtkHTML</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0541" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0541"/>
        <description>gtkhtml before 1.1.10, as used in Evolution, allows remote attackers to cause a denial of service (crash) via a malformed message that causes a null pointer dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="gtkhtml version is less than 1.1.9-0.9.1" negate="false" test_ref="oval:org.mitre.oval:tst:2877"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/evolution is executable">
            <criterion comment="/usr/bin/evolution is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2876"/>
            <criterion comment="/usr/bin/evolution is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2875"/>
            <criterion comment="/usr/bin/evolution is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2874"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:150" version="1" class="vulnerability">
      <metadata>
        <title>Apache Terminal Escape Sequence Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0020" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0020"/>
        <description>Apache does not filter terminal escape sequences from its error logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="httpd version is less than 2.0.40-21.1" negate="false" test_ref="oval:org.mitre.oval:tst:2866"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2865"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:151" version="1" class="vulnerability">
      <metadata>
        <title>Apache Terminal Escape Sequence Vulnerability II</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0083" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0083"/>
        <description>Apache 1.3 before 1.3.25 and Apache 2.0 before version 2.0.46 does not filter terminal escape sequences from its access logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences, a different vulnerability than CVE-2003-0020.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="httpd version is less than 2.0.40-21.1" negate="false" test_ref="oval:org.mitre.oval:tst:2866"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2865"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:156" version="1" class="vulnerability">
      <metadata>
        <title>Apache Linefeed Allocation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0132" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0132"/>
        <description>A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="httpd version is less than 2.0.40-21.1" negate="false" test_ref="oval:org.mitre.oval:tst:2866"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2865"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:164" version="1" class="vulnerability">
      <metadata>
        <title>Trustix Secure Linux der_chop Script Symlink Attack Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0975" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0975"/>
        <description>The der_chop script in the openssl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local users to overwrite files via a symlink attack on temporary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-14T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-15T09:48:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criteria operator="OR" comment="openssl, openssl-devel, OR openssl-perl older than 0.9.7a-33.15 or openssl096b older than 0.9.6b-16.22.3">
            <criterion comment="openssl-perl is older than 0.9.7a-33.15" negate="false" test_ref="oval:org.mitre.oval:tst:2860"/>
            <criterion comment="openssl-devel older than 0.9.7a-33.15" negate="false" test_ref="oval:org.mitre.oval:tst:2859"/>
            <criterion comment="openssl older than 0.9.7a-33.15" negate="false" test_ref="oval:org.mitre.oval:tst:2858"/>
            <criterion comment="openssl096b package is older than 0.9.6b-16.22.3.i386.rpm" negate="false" test_ref="oval:org.mitre.oval:tst:2857"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/tmp is writable by everyone" negate="false" test_ref="oval:org.mitre.oval:tst:2856"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:169" version="1" class="vulnerability">
      <metadata>
        <title>Apache Weak Cipher Suite Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0192" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0192"/>
        <description>Apache 2 before 2.0.47, and certain versions of mod_ssl for Apache 1.3, do not properly handle "certain sequences of per-directory renegotiations and the SSLCipherSuite directive being used to upgrade from a weak ciphersuite to a strong one," which could cause Apache to use the weak ciphersuite.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-05T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="httpd version is less than 2.0.40-21.5" negate="false" test_ref="oval:org.mitre.oval:tst:2852"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd.worker is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2851"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:173" version="1" class="vulnerability">
      <metadata>
        <title>Apache prefork MPM Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0253" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0253"/>
        <description>The prefork MPM in Apache 2 before 2.0.47 does not properly handle certain errors from accept, which could lead to a denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-05T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="httpd version is less than 2.0.40-21.5" negate="false" test_ref="oval:org.mitre.oval:tst:2852"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2865"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:183" version="1" class="vulnerability">
      <metadata>
        <title>Apache IPv6 Socket Failure Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0254" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0254"/>
        <description>Apache 2 before 2.0.47, when running on an IPv6 host, allows attackers to cause a denial of service (CPU consumption by infinite loop) when the FTP proxy server fails to create an IPv6 socket.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-05T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="httpd version is less than 2.0.40-21.5" negate="false" test_ref="oval:org.mitre.oval:tst:2852"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2865"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:193" version="1" class="vulnerability">
      <metadata>
        <title>KDM pam_setcred Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>KDM</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0690" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0690"/>
        <description>KDM in KDE 3.1.3 and earlier does not verify whether the pam_setcred function call succeeds, which may allow attackers to gain root privileges by triggering error conditions within PAM modules, as demonstrated in certain configurations of the MIT pam_krb5 module.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-21T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kdebase version is less than 3.1-15" negate="false" test_ref="oval:org.mitre.oval:tst:2826"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/kdm is executable">
            <criterion comment="/usr/bin/kdm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2825"/>
            <criterion comment="/usr/bin/kdm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2824"/>
            <criterion comment="/usr/bin/kdm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2823"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2" version="1" class="vulnerability">
      <metadata>
        <title>Mutt BO Vulnerability in balsa</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Mutt</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0140" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0140"/>
        <description>Buffer overflow in Mutt 1.4.0 and possibly earlier versions, 1.5.x up to 1.5.3, and other programs that use Mutt code such as Balsa before 2.0.10, allows a remote malicious IMAP server to cause a denial of service (crash) and possibly execute arbitrary code via a crafted folder.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="balsa version is less than 2.0.6-2" negate="false" test_ref="oval:org.mitre.oval:tst:3151"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/balsa is executable">
            <criterion comment="/usr/bin/balsa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:3150"/>
            <criterion comment="/usr/bin/balsa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:3149"/>
            <criterion comment="/usr/bin/balsa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:3148"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:215" version="1" class="vulnerability">
      <metadata>
        <title>KDM Weak Cookie Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>KDM</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0692" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0692"/>
        <description>KDM in KDE 3.1.3 and earlier uses a weak session cookie generation algorithm that does not provide 128 bits of entropy, which allows attackers to guess session cookies via brute force methods and gain access to the user session.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-21T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kdebase version is less than 3.1-15" negate="false" test_ref="oval:org.mitre.oval:tst:2826"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/kdm is executable">
            <criterion comment="/usr/bin/kdm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2825"/>
            <criterion comment="/usr/bin/kdm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2824"/>
            <criterion comment="/usr/bin/kdm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2823"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:230" version="1" class="vulnerability">
      <metadata>
        <title>xdrmem_bytes() Integer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>krb5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0028" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0028"/>
        <description>Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-14T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="krb5-server version is less than 1.2.7-14" negate="false" test_ref="oval:org.mitre.oval:tst:2785"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:244" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos KDC Heap Corruption Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>krb5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0082" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0082"/>
        <description>The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes the KDC to corrupt its heap (aka "buffer underrun").</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-14T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="krb5-server version is less than 1.2.7-14" negate="false" test_ref="oval:org.mitre.oval:tst:2785"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:248" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos krb4 Plaintext Attack Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>krb5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0138" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0138"/>
        <description>Version 4 of the Kerberos protocol (krb4), as used in Heimdal and other packages, allows an attacker to impersonate any principal in a realm via a chosen-plaintext attack.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-14T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="krb5-libs version is less than 1.2.7-14" negate="false" test_ref="oval:org.mitre.oval:tst:2756"/>
        <criteria operator="OR" comment="krb5-server or krb5-workstation installed">
          <criterion comment="krb5-server version is less than 1.2.7-14" negate="false" test_ref="oval:org.mitre.oval:tst:2785"/>
          <criterion comment="krb5-workstation version is less than 1.2.7-14" negate="false" test_ref="oval:org.mitre.oval:tst:2755"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:250" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos krb4 Ticket Splicing Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>krb5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0139" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0139"/>
        <description>Certain weaknesses in the implementation of version 4 of the Kerberos protocol (krb4) in the krb5 distribution, when triple-DES keys are used to key krb4 services, allow an attacker to create krb4 tickets for unauthorized principals using a cut-and-paste attack and "ticket splicing."</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-14T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="krb5-libs version is less than 1.2.7-14" negate="false" test_ref="oval:org.mitre.oval:tst:2756"/>
        <criteria operator="OR" comment="krb5-server or krb5-workstation installed">
          <criterion comment="krb5-server version is less than 1.2.7-14" negate="false" test_ref="oval:org.mitre.oval:tst:2785"/>
          <criterion comment="krb5-workstation version is less than 1.2.7-14" negate="false" test_ref="oval:org.mitre.oval:tst:2755"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:254" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel ptrace Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0127" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0127"/>
        <description>The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-25T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kernel version = 2.4.20-6" negate="false" test_ref="oval:org.mitre.oval:tst:2753"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="kernel 2.4.20-6 or earlier is running" negate="false" test_ref="oval:org.mitre.oval:tst:2752"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:260" version="1" class="vulnerability">
      <metadata>
        <title>Netfilter Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Netfilter</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0187" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0187"/>
        <description>The connection tracking core of Netfilter for Linux 2.4.20, with CONFIG_IP_NF_CONNTRACK enabled or the ip_conntrack module loaded, allows remote attackers to cause a denial of service (resource consumption) due to an inconsistency with Linux 2.4.20's support of linked lists, which causes Netfilter to fail to identify connections with an UNCONFIRMED status and use large timeouts.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-25T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-13.9" negate="false" test_ref="oval:org.mitre.oval:tst:2742"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:261" version="1" class="vulnerability">
      <metadata>
        <title>Linux Route Cache / Netfilter Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Netfilter</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0244" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0244"/>
        <description>The route cache implementation in Linux 2.4, and the Netfilter IP conntrack module, allows remote attackers to cause a denial of service (CPU consumption) via packets with forged source addresses that cause a large number of hash table collisions.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-25T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-13.9" negate="false" test_ref="oval:org.mitre.oval:tst:2742"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:263" version="1" class="vulnerability">
      <metadata>
        <title>Gaim DoS via Malformed MSN Message</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Gaim</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1934" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1934"/>
        <description>Gaim before 1.3.1 allows remote attackers to cause a denial of service (crash) via a malformed MSN message that leads to a memory allocation of a large size, possibly due to an integer signedness error.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="gaim RPM earlier than 1:1.3.1-0.el3" negate="false" test_ref="oval:org.mitre.oval:tst:2740"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/gaim is executable by any user" negate="false" test_ref="oval:org.mitre.oval:tst:2739"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:278" version="1" class="vulnerability">
      <metadata>
        <title>Linux ioperm Privilege Restriction Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0246" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0246"/>
        <description>The ioperm system call in Linux kernel 2.4.20 and earlier does not properly restrict privileges, which allows local users to gain read or write access to certain I/O ports.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-25T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-13.9" negate="false" test_ref="oval:org.mitre.oval:tst:2742"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:28" version="1" class="vulnerability">
      <metadata>
        <title>SKK/DDSKK Insecure Temporary File Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>skk</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0539" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0539"/>
        <description>skk (Simple Kana to Kanji conversion program) 12.1 and earlier, and the ddskk package which is based on skk, creates temporary files insecurely, which allows local users to overwrite arbitrary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-04T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable config">
          <criterion comment="ddskk version is less than 11.6.0-11.90" negate="false" test_ref="oval:org.mitre.oval:tst:3061"/>
          <criterion comment="ddskk-xemacs version is less than 11.6.0-11.90" negate="false" test_ref="oval:org.mitre.oval:tst:3060"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2819" version="1" class="vulnerability">
      <metadata>
        <title>Denial of Service Vulnerability in Linux Kernel do_fork Function via CLONE_VM</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0427" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0427"/>
        <description>The do_fork function in Linux 2.4.x before 2.4.26, and 2.6.x before 2.6.6, does not properly decrement the mm_count counter when an error occurs after the mm_struct for a child process has been activated, which triggers a memory leak that allows local users to cause a denial of service (memory exhaustion) via the clone (CLONE_VM) system call.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-09-01T11:51:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-09-08T10:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-09-22T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-10-06T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="kernel, kernel-hugemem or kernel-smp rpm older than 2.4.21-15.0.2EL Epoch 0">
          <criterion comment="kernel rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:476"/>
          <criterion comment="kernel-hugemem rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:475"/>
          <criterion comment="kernel-smp rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:474"/>
        </criteria>
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:284" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel TTY Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0247" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0247"/>
        <description>Unknown vulnerability in the TTY layer of the Linux kernel 2.4 allows attackers to cause a denial of service ("kernel oops").</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-18.9" negate="false" test_ref="oval:org.mitre.oval:tst:2721"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2915" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel Denial of Service Vulnerability via fsave and frstor Instructions</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0554" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0554"/>
        <description>Linux kernel 2.4.x and 2.6.x for x86 allows local users to cause a denial of service (system crash), possibly via an infinite loop that triggers a signal handler with a certain sequence of fsave and frstor instructions, as originally demonstrated using a "crash.c" program.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-09-02T12:10:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-09-08T10:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-09-22T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-10-06T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="OR" comment="kernel, kernel-hugemem or kernel-smp rpm older than 2.4.21-15.0.2EL Epoch 0">
          <criterion comment="kernel rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:476"/>
          <criterion comment="kernel-hugemem rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:475"/>
          <criterion comment="kernel-smp rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:474"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:292" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel mxcsr Code Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0248" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0248"/>
        <description>The mxcsr code in Linux kernel 2.4 allows attackers to modify CPU state registers via a malformed address.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-18.9" negate="false" test_ref="oval:org.mitre.oval:tst:2721"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:295" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel TCP/IP Fragment Reassembly Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0364" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0364"/>
        <description>The TCP/IP fragment reassembly handling in the Linux kernel 2.4 allows remote attackers to cause a denial of service (CPU consumption) via certain packets that cause a large number of hash table collisions.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-18.9" negate="false" test_ref="oval:org.mitre.oval:tst:2721"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2961" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Privilege Escalation Vulnerabilities in Linux Kernel</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0495" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0495"/>
        <description>Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-09-02T12:06:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-09-08T10:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-09-22T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-10-06T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="OR" comment="kernel, kernel-hugemem or kernel-smp rpm older than 2.4.21-15.0.2EL Epoch 0">
          <criterion comment="kernel rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:476"/>
          <criterion comment="kernel-hugemem rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:475"/>
          <criterion comment="kernel-smp rpm older than 2.4.21-15.0.2.EL Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:474"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:304" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Linux Kernel Serial Link Information Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0461" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0461"/>
        <description>/proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:309" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel execve Race Condition Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0462" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0462"/>
        <description>A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc/base.c on Linux 2.4 allows local users to cause a denial of service (crash).</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:311" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel Reuse Flag Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0464" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0464"/>
        <description>The RPC code in Linux kernel 2.4 sets the reuse flag when sockets are created, which could allow local users to bind to UDP ports that are used by privileged services such as nfsd.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:327" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel execve Read Acces to Restricted File Descriptors</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0476" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0476"/>
        <description>The execve system call in Linux 2.4.x records the file descriptor of the executable process in the file table of the calling process, which allows local users to gain read access to restricted file descriptors.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:328" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel /proc/self setuid Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0501" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0501"/>
        <description>The /proc filesystem in Linux allows local users to obtain sensitive information by opening various entries in /proc/self before executing a setuid program, which causes the program to fail to change the ownership and permissions of those entries.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:345" version="1" class="vulnerability">
      <metadata>
        <title>shtool Race Condition</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>php</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1751" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1751"/>
        <description>Race condition in shtool 2.0.1 and earlier allows local users to create or modify arbitrary files via a symlink attack on the .shtool.$$ temporary file, a different vulnerability than CVE-2005-1759.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-19T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="php RPM prior to  0:4.3.2-24.ent" negate="false" test_ref="oval:org.mitre.oval:tst:2687"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/tmp is writable by everyone" negate="false" test_ref="oval:org.mitre.oval:tst:2856"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:350" version="1" class="vulnerability">
      <metadata>
        <title>PEAR XML_RPC PHP Code Execution Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>php</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1921" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1921"/>
        <description>Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-19T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="php RPM prior to  0:4.3.2-24.ent" negate="false" test_ref="oval:org.mitre.oval:tst:2687"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/httpd/conf.d/php.conf exists" negate="false" test_ref="oval:org.mitre.oval:tst:2684"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:358" version="1" class="vulnerability">
      <metadata>
        <title>cpio Race Condition</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>cpio</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1111" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1111"/>
        <description>Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by cpio after the decompression is complete.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-08T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-09T07:56:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-24T09:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="cpio rpm is older than 0:2.5-4.RHEL3" negate="false" test_ref="oval:org.mitre.oval:tst:2683"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/bin/cpio is executable by all" negate="false" test_ref="oval:org.mitre.oval:tst:2682"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3657" version="1" class="vulnerability">
      <metadata>
        <title>Portable Network Graphics Library Offset Calculation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>libpng</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1363" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1363"/>
        <description>Portable Network Graphics (PNG) library libpng 1.2.5 and earlier does not correctly calculate offsets, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a buffer overflow attack on the row buffers.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-09-03T04:26:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-09-08T10:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-09-22T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-10-06T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criteria operator="OR" comment="libpng or libpng-devel rpm older than 1.2.2-24, Epoch 2 OR libpng10or libpng10-devel rpm older than 1.0.13-14, Epoch 0">
          <criterion comment="libpng rpm older than 1.2.2-24, Epoch 2" negate="false" test_ref="oval:org.mitre.oval:tst:388"/>
          <criterion comment="libpng-devel rpm older than 1.2.2-24, Epoch 2" negate="false" test_ref="oval:org.mitre.oval:tst:387"/>
          <criterion comment="libpng10-devel rpm older than 1.0.13-14, Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:386"/>
          <criterion comment="libpng10 rpm older than 1.0.13-14, Epoch 0" negate="false" test_ref="oval:org.mitre.oval:tst:385"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:380" version="1" class="vulnerability">
      <metadata>
        <title>Insecure Design of the STP Protocol</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0550" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0550"/>
        <description>The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient security by design, which allows attackers to modify the bridge topology.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:382" version="1" class="vulnerability">
      <metadata>
        <title>gzip Directory Traversal Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>gzip</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1228" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1228"/>
        <description>Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-22T12:38:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="gzip RPM earlier than 0:1.3.3-12rhel3" negate="false" test_ref="oval:org.mitre.oval:tst:2667"/>
        </criteria>
        <criteria comment="Configuration section" operator="OR">
          <criterion comment="/usr/bin/gzip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2666"/>
          <criterion comment="/usr/bin/gunzip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2665"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:384" version="1" class="vulnerability">
      <metadata>
        <title>STP Protocol Length Verification Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0551" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0551"/>
        <description>The STP protocol implementation in Linux 2.4.x does not properly verify certain lengths, which could allow attackers to cause a denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:385" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel Bridge Forwarding Table Spoof Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0552" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0552"/>
        <description>Linux 2.4.x allows remote attackers to spoof the bridge Forwarding table via forged packets whose source addresses are the same as the target.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:386" version="1" class="vulnerability">
      <metadata>
        <title>Lunix Kernel NFSv3 Procedure Kernel Panic Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0619" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0619"/>
        <description>Integer signedness error in the decode_fh function of nfs3xdr.c in Linux kernel before 2.4.21 allows remote attackers to cause a denial of service (kernel panic) via a negative size value within XDR data of an NFSv3 procedure call.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-25T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-13.9" negate="false" test_ref="oval:org.mitre.oval:tst:2742"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:387" version="1" class="vulnerability">
      <metadata>
        <title>C-Media Sound Driver Userspace Access Vulnerability II</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0699" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0699"/>
        <description>The C-Media PCI sound driver in Linux before 2.4.21 does not use the get_user function to access userspace, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerability than CVE-2003-0700.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:401" version="1" class="vulnerability">
      <metadata>
        <title>C-Media Sound Driver Userspace Access Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0700" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0700"/>
        <description>The C-Media PCI sound driver in Linux before 2.4.22 does not use the get_user function to access userspace in certain conditions, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerability than CVE-2003-0699.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="kernel version is less than 2.4.20-19.9" negate="false" test_ref="oval:org.mitre.oval:tst:2709"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:411" version="1" class="vulnerability">
      <metadata>
        <title>KDE Konqueror Userid/Password Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Konqueror</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0459" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0459"/>
        <description>KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-04T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kdelibs version is less than 3.1-12" negate="false" test_ref="oval:org.mitre.oval:tst:2656"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/konqueror is executable">
            <criterion comment="/usr/bin/konqueror is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2655"/>
            <criterion comment="/usr/bin/konqueror is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2654"/>
            <criterion comment="/usr/bin/konqueror is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2653"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:417" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 InstallVersion.compareTo() DoS and Code Execution Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2265" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2265"/>
        <description>Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of service (access violation and crash), and possibly execute arbitrary code, by calling InstallVersion.compareTo with an object instead of a string.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:423" version="1" class="vulnerability">
      <metadata>
        <title>LPRng Symbolic Link Attack Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>LPRng</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0136" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0136"/>
        <description>psbanner in the LPRng package allows local users to overwrite arbitrary files via a symbolic link attack on the /tmp/before file.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="lprng version is less than 3.8.19-3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2647"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="psbanner is world-executable" negate="false" test_ref="oval:org.mitre.oval:tst:2646"/>
          <criterion comment="lpd listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2645"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:430" version="1" class="vulnerability">
      <metadata>
        <title>Multilingual File Viewer .lv File Sneak Attack Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>lv</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0188" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0188"/>
        <description>lv reads a .lv file from the current working directory, which allows local users to execute arbitrary commands as other lv users by placing malicious .lv files into other directories.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-19T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="lv version is less than 4.49.4-9.9.1" negate="false" test_ref="oval:org.mitre.oval:tst:2639"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:434" version="1" class="vulnerability">
      <metadata>
        <title>Mutt BO Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Mutt</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0140" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0140"/>
        <description>Buffer overflow in Mutt 1.4.0 and possibly earlier versions, 1.5.x up to 1.5.3, and other programs that use Mutt code such as Balsa before 2.0.10, allows a remote malicious IMAP server to cause a denial of service (crash) and possibly execute arbitrary code via a crafted folder.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mutt version is less than 1.4.1-1" negate="false" test_ref="oval:org.mitre.oval:tst:2638"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/mutt is executable">
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2637"/>
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2636"/>
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2635"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:436" version="1" class="vulnerability">
      <metadata>
        <title>MYSQLd Double-free Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>MySQL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0073" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0073"/>
        <description>Double-free vulnerability in mysqld for MySQL before 3.23.55 allows attackers with MySQL access to cause a denial of service (crash) via mysql_change_user.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mysql-server version is less than 3.23.56-1.9" negate="false" test_ref="oval:org.mitre.oval:tst:2634"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="mysqld is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:2633"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:442" version="1" class="vulnerability">
      <metadata>
        <title>MYSQL Privilege Escalation Vulnerability via INFO OUTFILE Select</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>MySQL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0150" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0150"/>
        <description>MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mysql-server version is less than 3.23.56-1.9" negate="false" test_ref="oval:org.mitre.oval:tst:2634"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="mysqld is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:2633"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:443" version="1" class="vulnerability">
      <metadata>
        <title>mountd xlog Function Off-by-One Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>nfs-utils</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0252" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0252"/>
        <description>Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-02T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="nfs-utils version is less than 1.0.1-3.9" negate="false" test_ref="oval:org.mitre.oval:tst:2631"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="rpc.mountd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2630"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:445" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSH Indirect User Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSH</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0190" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0190"/>
        <description>OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user does not exist, which allows remote attackers to determine valid usernames via a timing attack.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="openssh-server version is less than 3.5p1-6.9" negate="false" test_ref="oval:org.mitre.oval:tst:2629"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="sshd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2628"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:446" version="1" class="vulnerability">
      <metadata>
        <title>Memory Bugs in OpenSSH</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSH</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0682" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0682"/>
        <description>"Memory bugs" in OpenSSH 3.7.1 and earlier, with unknown impact, a different set of vulnerabilities than CVE-2003-0693 and CVE-2003-0695.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-21T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="openssh-server version is less than 3.5p1-11" negate="false" test_ref="oval:org.mitre.oval:tst:2627"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="sshd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2628"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:447" version="1" class="vulnerability">
      <metadata>
        <title>Mutliple Buffer Management Errors in OpenSSH II</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSH</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0693" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0693"/>
        <description>A "buffer management error" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to execute arbitrary code by causing an incorrect amount of memory to be freed and corrupting the heap, a different vulnerability than CVE-2003-0695.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-21T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="openssh-server version is less than 3.5p1-11" negate="false" test_ref="oval:org.mitre.oval:tst:2627"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="sshd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2628"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:452" version="1" class="vulnerability">
      <metadata>
        <title>Mutliple Buffer Management Errors in OpenSSH</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSH</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0695" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0695"/>
        <description>Multiple "buffer management errors" in OpenSSH before 3.7.1 may allow attackers to cause a denial of service or execute arbitrary code using (1) buffer_init in buffer.c, (2) buffer_free in buffer.c, or (3) a separate function in channels.c, a different vulnerability than CVE-2003-0693.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-21T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="openssh-server version is less than 3.5p1-11" negate="false" test_ref="oval:org.mitre.oval:tst:2627"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="sshd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2628"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:461" version="1" class="vulnerability">
      <metadata>
        <title>Klima-Pokorny-Rosa Attack Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0131" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0131"/>
        <description>The SSL and TLS components for OpenSSL 0.9.6i and earlier, 0.9.7, and 0.9.7a allow remote attackers to perform an unauthorized RSA private key operation via a modified Bleichenbacher attack that uses a large number of SSL or TLS connections using PKCS #1 v1.5 padding that cause OpenSSL to leak information regarding the relationship between ciphertext and the associated plaintext, aka the "Klima-Pokorny-Rosa attack."</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Added cmp-914 which uses an or to combine the 5 version tests. Previously the tests had been combined with an and.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="affected version of SSL and TLS components for OpenSSL">
          <criterion comment="openssl version is less than 0.9.7a-5" negate="false" test_ref="oval:org.mitre.oval:tst:2618"/>
          <criterion comment="openssl-devel version is less than 0.9.7a-5" negate="false" test_ref="oval:org.mitre.oval:tst:2617"/>
          <criterion comment="openssl-perl version is less than 0.9.7a-5" negate="false" test_ref="oval:org.mitre.oval:tst:2616"/>
          <criterion comment="openssl096 version is less than 0.9.6-17" negate="false" test_ref="oval:org.mitre.oval:tst:2615"/>
          <criterion comment="openssl096b version is less than 0.9.6b-6" negate="false" test_ref="oval:org.mitre.oval:tst:2614"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:466" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL No RSA Blinding Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0147" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0147"/>
        <description>OpenSSL does not use RSA blinding by default, which allows local and remote attackers to obtain the server's private key by determining factors using timing differences on (1) the number of extra reductions during Montgomery reduction, and (2) the use of different integer multiplication algorithms ("Karatsuba" and normal).</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Added cmp-914 which uses an or to combine the 5 version tests. Previously the tests had been combined with an and.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="affected version of SSL and TLS components for OpenSSL">
          <criterion comment="openssl version is less than 0.9.7a-5" negate="false" test_ref="oval:org.mitre.oval:tst:2618"/>
          <criterion comment="openssl-devel version is less than 0.9.7a-5" negate="false" test_ref="oval:org.mitre.oval:tst:2617"/>
          <criterion comment="openssl-perl version is less than 0.9.7a-5" negate="false" test_ref="oval:org.mitre.oval:tst:2616"/>
          <criterion comment="openssl096 version is less than 0.9.6-17" negate="false" test_ref="oval:org.mitre.oval:tst:2615"/>
          <criterion comment="openssl096b version is less than 0.9.6b-6" negate="false" test_ref="oval:org.mitre.oval:tst:2614"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:469" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Overflow in PAM SMB Module</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>pam_smb</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0686" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0686"/>
        <description>Buffer overflow in PAM SMB module (pam_smb) 1.1.6 and earlier, when authenticating to a remote service, allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-05T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="pam_smb version is less than 1.1.6-9.9" negate="false" test_ref="oval:org.mitre.oval:tst:2608"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:470" version="1" class="vulnerability">
      <metadata>
        <title>CGI.pm Cross-site Scripting Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>CGI.pm</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0615" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0615"/>
        <description>Cross-site scripting (XSS) vulnerability in start_form() of CGI.pm allows remote attackers to insert web script via a URL that is fed into the form's action parameter.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-25T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="perl-CGI version is less than 2.81-88.3" negate="false" test_ref="oval:org.mitre.oval:tst:2607"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:485" version="1" class="vulnerability">
      <metadata>
        <title>PH Cross-site Scripting Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>php</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0442" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0442"/>
        <description>Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="php version is less than 4.2.2-17.2" negate="false" test_ref="oval:org.mitre.oval:tst:2592"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:499" version="1" class="vulnerability">
      <metadata>
        <title>PINE Buffer Overflow</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>pine</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0720" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0720"/>
        <description>Buffer overflow in PINE before 4.58 allows remote attackers to execute arbitrary code via a malformed message/external-body MIME type.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="pine version is less than 4.44-19.90.0" negate="false" test_ref="oval:org.mitre.oval:tst:2587"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/pine is executable">
            <criterion comment="/usr/bin/pine is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2586"/>
            <criterion comment="/usr/bin/pine is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2585"/>
            <criterion comment="/usr/bin/pine is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2584"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:503" version="1" class="vulnerability">
      <metadata>
        <title>Integer Signedness Error in PINE</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>pine</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0721" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0721"/>
        <description>Integer signedness error in rfc2231_get_param from strings.c in PINE before 4.58 allows remote attackers to execute arbitrary code via an email that causes an out-of-bounds array access using a negative number.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="pine version is less than 4.44-19.90.0" negate="false" test_ref="oval:org.mitre.oval:tst:2587"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/pine is executable">
            <criterion comment="/usr/bin/pine is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2586"/>
            <criterion comment="/usr/bin/pine is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2585"/>
            <criterion comment="/usr/bin/pine is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2584"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:52" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Eye of GNOME (EOG) Packages Fix Format String Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>EOG</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0165" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0165"/>
        <description>Format string vulnerability in Eye Of Gnome (EOG) allows attackers to execute arbitrary code via format string specifiers in a command line argument for the file to display.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-14T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="eog version is less than 2.2.0-2" negate="false" test_ref="oval:org.mitre.oval:tst:3011"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="eog is executable">
            <criterion comment="eog is world-executable" negate="false" test_ref="oval:org.mitre.oval:tst:3010"/>
            <criterion comment="eog is group-executable" negate="false" test_ref="oval:org.mitre.oval:tst:3009"/>
            <criterion comment="eog is owner-executable" negate="false" test_ref="oval:org.mitre.oval:tst:3008"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:522" version="1" class="vulnerability">
      <metadata>
        <title>Postfix Bounce Scans Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Postfix</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0468" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0468"/>
        <description>Postfix 1.1.11 and earlier allows remote attackers to use Postfix to conduct "bounce scans" or DDos attacks of other hosts via an email address to the local host containing the target IP address and service name followed by a "!" string, which causes Postfix to attempt to use SMTP to communicate with the target on the associated port.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-02T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="postfix version is less than 1.1.12-1" negate="false" test_ref="oval:org.mitre.oval:tst:2578"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="smtpd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2577"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:54" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal SOCKS String Format Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0081" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0081"/>
        <description>Format string vulnerability in packet-socks.c of the SOCKS dissector for Ethereal 0.8.7 through 0.9.9 allows remote attackers to execute arbitrary code via SOCKS packets containing format string specifiers.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="ethereal version is less than 0.9.11-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:3007"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:544" version="1" class="vulnerability">
      <metadata>
        <title>Denial of Service Vulnerability in Postfix Parser Code</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Postfix</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0540" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0540"/>
        <description>The address parser code in Postfix 1.1.12 and earlier allows remote attackers to cause a denial of service (lock) via (1) a malformed envelope address to a local host that would generate a bounce and contains the ".!" string in the MAIL FROM or Errors-To headers, which causes nqmgr to lock up, or (2) via a valid MAIL FROM with a RCPT TO containing a ".!" string, which causes an instance of the SMTP listener to lock up.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-02T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="postfix version is less than 1.1.12-1" negate="false" test_ref="oval:org.mitre.oval:tst:2578"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="smtpd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2577"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:55" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal NTLMSSP Buffer Overflow</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0159" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0159"/>
        <description>Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="ethereal version is less than 0.9.11-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:3007"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:550" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Firefox and Mozilla Shared Object Code Execution</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2270" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2270"/>
        <description>Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to execute arbitrary code by navigating the prototype chain to reach a privileged object.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:552" version="1" class="vulnerability">
      <metadata>
        <title>SMB/CIFS Packet Fragment Re-assembly BO</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>smbd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0085" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0085"/>
        <description>Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="samba version is less than 2.2.7a-7.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:2566"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="smbd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2565"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:554" version="1" class="vulnerability">
      <metadata>
        <title>Samba Arbitrary File Overwrite Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Samba</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0086" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0086"/>
        <description>The code for writing reg files in Samba before 2.2.8 allows local users to overwrite arbitrary files via a race condition involving chown.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="samba version is less than 2.2.7a-7.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:2566"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:564" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Buffer Overflows in Samba</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Samba</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0196" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0196"/>
        <description>Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as discovered by the Samba team and a different vulnerability than CVE-2003-0201.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="samba version is less than 2.2.7a-8.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:2559"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="smbd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2558"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:567" version="1" class="vulnerability">
      <metadata>
        <title>BO in Samba call_trans2open Function</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Samba, Samba-TNG</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0201" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0201"/>
        <description>Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="samba version is less than 2.2.7a-8.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:2559"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="smbd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2558"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:569" version="1" class="vulnerability">
      <metadata>
        <title>Symlink Attack Vulnerability in semi/wemi MIME Libraries</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>semi MIME library</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0440" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0440"/>
        <description>The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="wl version is less than 2.10.1-1.1" negate="false" test_ref="oval:org.mitre.oval:tst:2557"/>
            <criterion comment="wl-xemacs version is less than 2.10.1-1.1" negate="false" test_ref="oval:org.mitre.oval:tst:2556"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/emacs is executable">
              <criterion comment="/usr/bin/emacs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2555"/>
              <criterion comment="/usr/bin/emacs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2554"/>
              <criterion comment="/usr/bin/emacs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2553"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xemacs is executable">
              <criterion comment="/usr/bin/xemacs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2552"/>
              <criterion comment="/usr/bin/xemacs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2551"/>
              <criterion comment="/usr/bin/xemacs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2550"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:572" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail BO in Prescan Function</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0694" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0694"/>
        <description>The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="sendmail version is less than 8.12.8-5.90" negate="false" test_ref="oval:org.mitre.oval:tst:2549"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="AND" comment="sendmail is Set-UID">
              <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2548"/>
              <criteria operator="OR" comment="sendmail is Set-UID">
                <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2547"/>
                <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2546"/>
              </criteria>
            </criteria>
            <criteria operator="AND" comment="sendmail is Set-GID">
              <criterion comment="sendmail is Set-GID" negate="false" test_ref="oval:org.mitre.oval:tst:2545"/>
              <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2546"/>
            </criteria>
            <criterion comment="sendmail listening" negate="false" test_ref="oval:org.mitre.oval:tst:2544"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:595" version="1" class="vulnerability">
      <metadata>
        <title>Potential BO in Ruleset Parsing for Sendmail</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0681" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0681"/>
        <description>A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-21T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="sendmail version is less than 8.12.8-9.90" negate="false" test_ref="oval:org.mitre.oval:tst:2518"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="AND" comment="sendmail is Set-UID">
              <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2548"/>
              <criteria operator="OR" comment="sendmail is Set-UID">
                <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2547"/>
                <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2546"/>
              </criteria>
            </criteria>
            <criteria operator="AND" comment="sendmail is Set-GID">
              <criterion comment="sendmail is Set-GID" negate="false" test_ref="oval:org.mitre.oval:tst:2545"/>
              <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2546"/>
            </criteria>
            <criterion comment="sendmail listening" negate="false" test_ref="oval:org.mitre.oval:tst:2544"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:597" version="1" class="vulnerability">
      <metadata>
        <title>Denial of Service in Sendmail via the enhdnsbl Feature</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0688" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0688"/>
        <description>The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-05T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="sendmail version is less than 8.12.8-6.90" negate="false" test_ref="oval:org.mitre.oval:tst:2517"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="sendmail is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:2516"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6" version="1" class="vulnerability">
      <metadata>
        <title>CUPS Partial Print DOS</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>CUPS</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0195" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0195"/>
        <description>CUPS before 1.1.19 allows remote attackers to cause a denial of service via a partial printing request to the IPP port (631), which does not time out.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-19T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="cups version is less than 1.1.17-13.3" negate="false" test_ref="oval:org.mitre.oval:tst:3147"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="cupsd listens on the network" negate="false" test_ref="oval:org.mitre.oval:tst:3146"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:603" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail BO in prescan Function</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0694" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0694"/>
        <description>The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-21T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="sendmail version is less than 8.12.8-9.90" negate="false" test_ref="oval:org.mitre.oval:tst:2518"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="AND" comment="sendmail is Set-UID">
              <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2548"/>
              <criteria operator="OR" comment="sendmail is Set-UID">
                <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2547"/>
                <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2546"/>
              </criteria>
            </criteria>
            <criteria operator="AND" comment="sendmail is Set-GID">
              <criterion comment="sendmail is Set-GID" negate="false" test_ref="oval:org.mitre.oval:tst:2545"/>
              <criterion comment="sendmail is Set-UID" negate="false" test_ref="oval:org.mitre.oval:tst:2546"/>
            </criteria>
            <criterion comment="sendmail listening" negate="false" test_ref="oval:org.mitre.oval:tst:2544"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:614" version="1" class="vulnerability">
      <metadata>
        <title>SqirrelMail Cross-site Scripting Vulnerabilities</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>SquirrelMail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0160" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0160"/>
        <description>Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail before 1.2.11 allow remote attackers to inject arbitrary HTML code and steal information from a client's web browser.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="squirrelmail version is less than 1.2.11-1" negate="false" test_ref="oval:org.mitre.oval:tst:2499"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:619" version="1" class="vulnerability">
      <metadata>
        <title>UnZip 5.0 Directory Traversal Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>unzip</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0282" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0282"/>
        <description>Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-04T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="unzip version is less than 5.50-33" negate="false" test_ref="oval:org.mitre.oval:tst:2498"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/unzip is executable">
            <criterion comment="/usr/bin/unzip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2497"/>
            <criterion comment="/usr/bin/unzip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2496"/>
            <criterion comment="/usr/bin/unzip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2495"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:623" version="1" class="vulnerability">
      <metadata>
        <title>sysreport Plaintext Password Leak</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>sysreport</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1760" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1760"/>
        <description>sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the password for a proxy server in plaintext and allows local users to gain privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="sysreport RPM earlier than 0:1.3.7.2-6" negate="false" test_ref="oval:org.mitre.oval:tst:2494"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/tmp is world-writable" negate="false" test_ref="oval:org.mitre.oval:tst:2493"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:631" version="1" class="vulnerability">
      <metadata>
        <title>up2date RPM GPG Signature Verification Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>up2date</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0546" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0546"/>
        <description>up2date 3.0.7 and 3.1.23 does not properly verify RPM GPG signatures, which could allow remote attackers to cause unsigned packages to be installed from the Red Hat Network, if that network is compromised.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-03T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="up2date version is less than 3.1.23.1-5" negate="false" test_ref="oval:org.mitre.oval:tst:2489"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="rhnsd is running" negate="false" test_ref="oval:org.mitre.oval:tst:2488"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:634" version="1" class="vulnerability">
      <metadata>
        <title>vsftpd Fails to Integrate with TCP Wrappers</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>vsftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0135" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0135"/>
        <description>vsftpd FTP daemon in Red Hat Linux 9 is not compiled against TCP wrappers (tcp_wrappers) but is installed as a standalone service, which inadvertently prevents vsftpd from restricting access as intended.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="vsftpd version is less than 1.1.3-8" negate="false" test_ref="oval:org.mitre.oval:tst:2487"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="vsftpd is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:2486"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:637" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Firefox and Mozilla Framed Site Spoofing Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1937" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1937"/>
        <description>A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerability, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2004-0718.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:647" version="1" class="vulnerability">
      <metadata>
        <title>mikmod Long Filename Buffer Overflow</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mikmod</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0427" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0427"/>
        <description>Buffer overflow in mikmod 3.1.6 and earlier allows remote attackers to execute arbitrary code via an archive file that contains a file with a long filename.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-22T12:38:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="mikmod RPM prior to 0:3.1.6-22.EL3" negate="false" test_ref="oval:org.mitre.oval:tst:2474"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mikmod is executable by any user" negate="false" test_ref="oval:org.mitre.oval:tst:2473"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:657" version="1" class="vulnerability">
      <metadata>
        <title>xinitd Memory Leak Invites Denial of Service Attack</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>xinetd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0211" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0211"/>
        <description>Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large number of rejected connections.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <modified date="2004-05-17T12:00:00.000-04:00" comment="Changed tested epoch in xinetd test rvt-253 to 2, based on testing.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="xinetd version is less than 2:2.3.11-1.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:2467"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="xinetd is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:2466"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:664" version="1" class="vulnerability">
      <metadata>
        <title>Code Execution Vulnerability in XPDF PDF Viewer</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>xpdf</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0434" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0434"/>
        <description>Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="xpdf version is less than 2.0.1-11" negate="false" test_ref="oval:org.mitre.oval:tst:2455"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="xpdf is executable">
            <criterion comment="xpdf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2454"/>
            <criterion comment="xpdf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2453"/>
            <criterion comment="xpdf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2452"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:667" version="1" class="vulnerability">
      <metadata>
        <title>ypserv NIS Server Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>ypserv</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0251" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0251"/>
        <description>ypserv NIS server before 2.7 allows remote attackers to cause a denial of service via a TCP client request that does not respond to the server, which causes ypserv to block.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="ypserv version is less than 2.8-0.9E" negate="false" test_ref="oval:org.mitre.oval:tst:2451"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="ypserv is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2450"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:676" version="1" class="vulnerability">
      <metadata>
        <title>PostgreSQL Character Conversion Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>postgresql</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1409" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1409"/>
        <description>PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain character conversion functions, which allows unprivileged users to call those functions with malicious values, with unknown impact, aka the "Character conversion vulnerability."</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-27T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="rh-postgresql-server is earlier than 0:7.3.10-1" negate="false" test_ref="oval:org.mitre.oval:tst:2433"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="postmaster (the PostgreSQL master daemon) is running" negate="false" test_ref="oval:org.mitre.oval:tst:2432"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:69" version="1" class="vulnerability">
      <metadata>
        <title>Off-by-one Vulnerabilities in Ethereal 0.9.11</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0356" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0356"/>
        <description>Multiple off-by-one vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) AIM, (2) GIOP Gryphon, (3) OSPF, (4) PPTP, (5) Quake, (6) Quake2, (7) Quake3, (8) Rsync, (9) SMB, (10) SMPP, and (11) TSP dissectors, which do not properly use the tvb_get_nstringz and tvb_get_nstringz0 functions.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="ethereal version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2985"/>
          <criterion comment="ethereal-gnome version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2984"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:711" version="1" class="vulnerability">
      <metadata>
        <title>ImageMagick Buffer Overflow in ReadPNMImage()</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>ImageMagick</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1275" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1275"/>
        <description>Heap-based buffer overflow in the ReadPNMImage function in pnm.c for ImageMagick 6.2.1 and earlier allows remote attackers to cause a denial of service (application crash) via a PNM file with a small colors value.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-28T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-29T06:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ImageMagick RPM earlier than 0:5.5.6-14" negate="false" test_ref="oval:org.mitre.oval:tst:2401"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:717" version="1" class="vulnerability">
      <metadata>
        <title>gftp Directory Traversal Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>gftp</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0372" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0372"/>
        <description>Directory traversal vulnerability in gftp before 2.0.18 for GTK+ allows remote malicious FTP servers to read arbitrary files via .. (dot dot) sequences in filenames returned from a LIST command.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-06-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-06-22T12:38:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-07-27T10:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">ACCEPTED</status_change>
            <modified date="2006-01-25T10:22:00.000-04:00" comment="modified upt-62 - Changed DATA operation to OR (to test for any exec bit set, not all).  Fixed typo in comment.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-01-25T07:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="gftp rpm is earlier than 1:2.0.14-4" negate="false" test_ref="oval:org.mitre.oval:tst:2394"/>
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="gftp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2393"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:729" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Firefox and Mozilla DOM Node Spoofing</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2269" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2269"/>
        <description>Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing").</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:73" version="1" class="vulnerability">
      <metadata>
        <title>Integer Overflow Vulnerabilities in Ethereal 0.9.11</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0357" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0357"/>
        <description>Multiple integer overflow vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) Mount and (2) PPP dissectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="ethereal version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2985"/>
          <criterion comment="ethereal-gnome version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2984"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:742" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Improper Handling of Synthetic Events in Mozilla</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2260" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2260"/>
        <description>The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:744" version="1" class="vulnerability">
      <metadata>
        <title>Gaim DoS via Yahoo! Message</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Gaim</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1269" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1269"/>
        <description>Gaim before 1.3.1 allows remote attackers to cause a denial of service (application crash) via a Yahoo! message with non-ASCII characters in a file name.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="gaim RPM earlier than 1:1.3.1-0.el3" negate="false" test_ref="oval:org.mitre.oval:tst:2740"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/gaim is executable by any user" negate="false" test_ref="oval:org.mitre.oval:tst:2739"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:749" version="1" class="vulnerability">
      <metadata>
        <title>bzip2 Decompression Bomb</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>bzip2</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1260" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1260"/>
        <description>bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes an infinite loop (a.k.a "decompression bomb").</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="bzip2 RPM earlier than 0:1.0.2-11.EL3.4" negate="false" test_ref="oval:org.mitre.oval:tst:2386"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/bzip2 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2385"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:75" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal 0.9.12 Vulnerability in DCERPC Dissector</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0428" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0428"/>
        <description>Unknown vulnerability in the DCERPC (DCE/RPC) dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (memory consumption) via a certain NDR string.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="ethereal version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2985"/>
          <criterion comment="ethereal-gnome version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2984"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:759" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 Firefox and Mozilla Framed Site Spoofing Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1937" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1937"/>
        <description>A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerability, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2004-0718.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:773" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Mozilla top.focus() Cross-Site Scripting Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2266" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2266"/>
        <description>Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:781" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 InstallVersion.compareTo() DoS and Code Execution Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2265" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2265"/>
        <description>Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of service (access violation and crash), and possibly execute arbitrary code, by calling InstallVersion.compareTo with an object instead of a string.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:803" version="1" class="vulnerability">
      <metadata>
        <title>RedHat Code Execution and DoS Vulnerabilities in PWLib</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>PWLib</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0097" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0097"/>
        <description>Multiple vulnerabilities in PWLib before 1.6.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Added a program_name element to rlt-217">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="pwlib version is less than 1.4.7-4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2321"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="a program is listening on TCP or UDP port 1720" negate="false" test_ref="oval:org.mitre.oval:tst:2320"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:804" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat netpbm File Overwrite Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>netpbm</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0924" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0924"/>
        <description>netpbm 9.25 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="netpbm version is less than 9.24-10.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2319"/>
            <criterion comment="netpbm-devel version is less than 9.24-10.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2318"/>
            <criterion comment="netpbm-progs version is less than 9.24-10.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2317"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable configuration">
            <criteria operator="OR" comment="/usr/bin/411toppm is executable">
              <criterion comment="/usr/bin/411toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2316"/>
              <criterion comment="/usr/bin/411toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2315"/>
              <criterion comment="/usr/bin/411toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2314"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/asciitopgm is executable">
              <criterion comment="/usr/bin/asciitopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2313"/>
              <criterion comment="/usr/bin/asciitopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2312"/>
              <criterion comment="/usr/bin/asciitopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2311"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/atktopbm is executable">
              <criterion comment="/usr/bin/atktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2310"/>
              <criterion comment="/usr/bin/atktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2309"/>
              <criterion comment="/usr/bin/atktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2308"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/bioradtopgm is executable">
              <criterion comment="/usr/bin/bioradtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2307"/>
              <criterion comment="/usr/bin/bioradtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2306"/>
              <criterion comment="/usr/bin/bioradtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2305"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/bmptoppm is executable">
              <criterion comment="/usr/bin/bmptoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2304"/>
              <criterion comment="/usr/bin/bmptoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2303"/>
              <criterion comment="/usr/bin/bmptoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2302"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/brushtopbm is executable">
              <criterion comment="/usr/bin/brushtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2301"/>
              <criterion comment="/usr/bin/brushtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2300"/>
              <criterion comment="/usr/bin/brushtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2299"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/cmuwmtopbm is executable">
              <criterion comment="/usr/bin/cmuwmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2298"/>
              <criterion comment="/usr/bin/cmuwmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2297"/>
              <criterion comment="/usr/bin/cmuwmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2296"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/eyuvtoppm is executable">
              <criterion comment="/usr/bin/eyuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2295"/>
              <criterion comment="/usr/bin/eyuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2294"/>
              <criterion comment="/usr/bin/eyuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2293"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/fiascotopnm is executable">
              <criterion comment="/usr/bin/fiascotopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2292"/>
              <criterion comment="/usr/bin/fiascotopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2291"/>
              <criterion comment="/usr/bin/fiascotopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2290"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/fitstopnm is executable">
              <criterion comment="/usr/bin/fitstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2289"/>
              <criterion comment="/usr/bin/fitstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2288"/>
              <criterion comment="/usr/bin/fitstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2287"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/fstopgm is executable">
              <criterion comment="/usr/bin/fstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2286"/>
              <criterion comment="/usr/bin/fstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2285"/>
              <criterion comment="/usr/bin/fstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2284"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/g3topbm is executable">
              <criterion comment="/usr/bin/g3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2283"/>
              <criterion comment="/usr/bin/g3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2282"/>
              <criterion comment="/usr/bin/g3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2281"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/gemtopbm is executable">
              <criterion comment="/usr/bin/gemtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2280"/>
              <criterion comment="/usr/bin/gemtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2279"/>
              <criterion comment="/usr/bin/gemtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2278"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/gemtopnm is executable">
              <criterion comment="/usr/bin/gemtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2277"/>
              <criterion comment="/usr/bin/gemtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2276"/>
              <criterion comment="/usr/bin/gemtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2275"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/giftopnm is executable">
              <criterion comment="/usr/bin/giftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2274"/>
              <criterion comment="/usr/bin/giftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2273"/>
              <criterion comment="/usr/bin/giftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2272"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/gouldtoppm is executable">
              <criterion comment="/usr/bin/gouldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2271"/>
              <criterion comment="/usr/bin/gouldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2270"/>
              <criterion comment="/usr/bin/gouldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2269"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/hipstopgm is executable">
              <criterion comment="/usr/bin/hipstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2268"/>
              <criterion comment="/usr/bin/hipstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2267"/>
              <criterion comment="/usr/bin/hipstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2266"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/hpcdtoppm is executable">
              <criterion comment="/usr/bin/hpcdtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2265"/>
              <criterion comment="/usr/bin/hpcdtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2264"/>
              <criterion comment="/usr/bin/hpcdtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2263"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/icontopbm is executable">
              <criterion comment="/usr/bin/icontopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2262"/>
              <criterion comment="/usr/bin/icontopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2261"/>
              <criterion comment="/usr/bin/icontopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2260"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ilbmtoppm is executable">
              <criterion comment="/usr/bin/ilbmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2259"/>
              <criterion comment="/usr/bin/ilbmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2258"/>
              <criterion comment="/usr/bin/ilbmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2257"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/imgtoppm is executable">
              <criterion comment="/usr/bin/imgtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2256"/>
              <criterion comment="/usr/bin/imgtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2255"/>
              <criterion comment="/usr/bin/imgtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2254"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/jpegtopnm is executable">
              <criterion comment="/usr/bin/jpegtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2253"/>
              <criterion comment="/usr/bin/jpegtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2252"/>
              <criterion comment="/usr/bin/jpegtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2251"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/leaftoppm is executable">
              <criterion comment="/usr/bin/leaftoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2250"/>
              <criterion comment="/usr/bin/leaftoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2249"/>
              <criterion comment="/usr/bin/leaftoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2248"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/lispmtopgm is executable">
              <criterion comment="/usr/bin/lispmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2247"/>
              <criterion comment="/usr/bin/lispmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2246"/>
              <criterion comment="/usr/bin/lispmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2245"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/macptopbm is executable">
              <criterion comment="/usr/bin/macptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2244"/>
              <criterion comment="/usr/bin/macptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2243"/>
              <criterion comment="/usr/bin/macptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2242"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/mdatopbm is executable">
              <criterion comment="/usr/bin/mdatopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2241"/>
              <criterion comment="/usr/bin/mdatopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2240"/>
              <criterion comment="/usr/bin/mdatopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2239"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/mgrtopbm is executable">
              <criterion comment="/usr/bin/mgrtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2238"/>
              <criterion comment="/usr/bin/mgrtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2237"/>
              <criterion comment="/usr/bin/mgrtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2236"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/mtvtoppm is executable">
              <criterion comment="/usr/bin/mtvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2235"/>
              <criterion comment="/usr/bin/mtvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2234"/>
              <criterion comment="/usr/bin/mtvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2233"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/neotoppm is executable">
              <criterion comment="/usr/bin/neotoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2232"/>
              <criterion comment="/usr/bin/neotoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2231"/>
              <criterion comment="/usr/bin/neotoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2230"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/palmtopnm is executable">
              <criterion comment="/usr/bin/palmtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2229"/>
              <criterion comment="/usr/bin/palmtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2228"/>
              <criterion comment="/usr/bin/palmtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2227"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamchannel is executable">
              <criterion comment="/usr/bin/pamchannel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2226"/>
              <criterion comment="/usr/bin/pamchannel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2225"/>
              <criterion comment="/usr/bin/pamchannel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2224"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamcut is executable">
              <criterion comment="/usr/bin/pamcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2223"/>
              <criterion comment="/usr/bin/pamcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2222"/>
              <criterion comment="/usr/bin/pamcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2221"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamdeinterlace is executable">
              <criterion comment="/usr/bin/pamdeinterlace is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2220"/>
              <criterion comment="/usr/bin/pamdeinterlace is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2219"/>
              <criterion comment="/usr/bin/pamdeinterlace is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2218"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamfile is executable">
              <criterion comment="/usr/bin/pamfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2217"/>
              <criterion comment="/usr/bin/pamfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2216"/>
              <criterion comment="/usr/bin/pamfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2215"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamoil is executable">
              <criterion comment="/usr/bin/pamoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2214"/>
              <criterion comment="/usr/bin/pamoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2213"/>
              <criterion comment="/usr/bin/pamoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2212"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamstretch is executable">
              <criterion comment="/usr/bin/pamstretch is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2211"/>
              <criterion comment="/usr/bin/pamstretch is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2210"/>
              <criterion comment="/usr/bin/pamstretch is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2209"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamtopnm is executable">
              <criterion comment="/usr/bin/pamtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2208"/>
              <criterion comment="/usr/bin/pamtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2207"/>
              <criterion comment="/usr/bin/pamtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2206"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmclean is executable">
              <criterion comment="/usr/bin/pbmclean is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2205"/>
              <criterion comment="/usr/bin/pbmclean is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2204"/>
              <criterion comment="/usr/bin/pbmclean is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2203"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmlife is executable">
              <criterion comment="/usr/bin/pbmlife is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2202"/>
              <criterion comment="/usr/bin/pbmlife is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2201"/>
              <criterion comment="/usr/bin/pbmlife is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2200"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmmake is executable">
              <criterion comment="/usr/bin/pbmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2199"/>
              <criterion comment="/usr/bin/pbmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2198"/>
              <criterion comment="/usr/bin/pbmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2197"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmmask is executable">
              <criterion comment="/usr/bin/pbmmask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2196"/>
              <criterion comment="/usr/bin/pbmmask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2195"/>
              <criterion comment="/usr/bin/pbmmask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2194"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmpage is executable">
              <criterion comment="/usr/bin/pbmpage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2193"/>
              <criterion comment="/usr/bin/pbmpage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2192"/>
              <criterion comment="/usr/bin/pbmpage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2191"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmpscale is executable">
              <criterion comment="/usr/bin/pbmpscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2190"/>
              <criterion comment="/usr/bin/pbmpscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2189"/>
              <criterion comment="/usr/bin/pbmpscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2188"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmreduce is executable">
              <criterion comment="/usr/bin/pbmreduce is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2187"/>
              <criterion comment="/usr/bin/pbmreduce is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2186"/>
              <criterion comment="/usr/bin/pbmreduce is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2185"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtext is executable">
              <criterion comment="/usr/bin/pbmtext is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2184"/>
              <criterion comment="/usr/bin/pbmtext is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2183"/>
              <criterion comment="/usr/bin/pbmtext is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2182"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmto10x is executable">
              <criterion comment="/usr/bin/pbmto10x is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2181"/>
              <criterion comment="/usr/bin/pbmto10x is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2180"/>
              <criterion comment="/usr/bin/pbmto10x is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2179"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmto4425 is executable">
              <criterion comment="/usr/bin/pbmto4425 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2178"/>
              <criterion comment="/usr/bin/pbmto4425 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2177"/>
              <criterion comment="/usr/bin/pbmto4425 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2176"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoascii is executable">
              <criterion comment="/usr/bin/pbmtoascii is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2175"/>
              <criterion comment="/usr/bin/pbmtoascii is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2174"/>
              <criterion comment="/usr/bin/pbmtoascii is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2173"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoatk is executable">
              <criterion comment="/usr/bin/pbmtoatk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2172"/>
              <criterion comment="/usr/bin/pbmtoatk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2171"/>
              <criterion comment="/usr/bin/pbmtoatk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2170"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtobbnbg is executable">
              <criterion comment="/usr/bin/pbmtobbnbg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2169"/>
              <criterion comment="/usr/bin/pbmtobbnbg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2168"/>
              <criterion comment="/usr/bin/pbmtobbnbg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2167"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtocmuwm is executable">
              <criterion comment="/usr/bin/pbmtocmuwm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2166"/>
              <criterion comment="/usr/bin/pbmtocmuwm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2165"/>
              <criterion comment="/usr/bin/pbmtocmuwm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2164"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoepsi is executable">
              <criterion comment="/usr/bin/pbmtoepsi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2163"/>
              <criterion comment="/usr/bin/pbmtoepsi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2162"/>
              <criterion comment="/usr/bin/pbmtoepsi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2161"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoepson is executable">
              <criterion comment="/usr/bin/pbmtoepson is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2160"/>
              <criterion comment="/usr/bin/pbmtoepson is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2159"/>
              <criterion comment="/usr/bin/pbmtoepson is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2158"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtog3 is executable">
              <criterion comment="/usr/bin/pbmtog3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2157"/>
              <criterion comment="/usr/bin/pbmtog3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2156"/>
              <criterion comment="/usr/bin/pbmtog3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2155"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtogem is executable">
              <criterion comment="/usr/bin/pbmtogem is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2154"/>
              <criterion comment="/usr/bin/pbmtogem is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2153"/>
              <criterion comment="/usr/bin/pbmtogem is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2152"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtogo is executable">
              <criterion comment="/usr/bin/pbmtogo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2151"/>
              <criterion comment="/usr/bin/pbmtogo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2150"/>
              <criterion comment="/usr/bin/pbmtogo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2149"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoicon is executable">
              <criterion comment="/usr/bin/pbmtoicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2148"/>
              <criterion comment="/usr/bin/pbmtoicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2147"/>
              <criterion comment="/usr/bin/pbmtoicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2146"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtolj is executable">
              <criterion comment="/usr/bin/pbmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2145"/>
              <criterion comment="/usr/bin/pbmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2144"/>
              <criterion comment="/usr/bin/pbmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2143"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoln03 is executable">
              <criterion comment="/usr/bin/pbmtoln03 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2142"/>
              <criterion comment="/usr/bin/pbmtoln03 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2141"/>
              <criterion comment="/usr/bin/pbmtoln03 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2140"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtolps is executable">
              <criterion comment="/usr/bin/pbmtolps is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2139"/>
              <criterion comment="/usr/bin/pbmtolps is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2138"/>
              <criterion comment="/usr/bin/pbmtolps is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2137"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtomacp is executable">
              <criterion comment="/usr/bin/pbmtomacp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2136"/>
              <criterion comment="/usr/bin/pbmtomacp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2135"/>
              <criterion comment="/usr/bin/pbmtomacp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2134"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtomda is executable">
              <criterion comment="/usr/bin/pbmtomda is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2133"/>
              <criterion comment="/usr/bin/pbmtomda is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2132"/>
              <criterion comment="/usr/bin/pbmtomda is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2131"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtomgr is executable">
              <criterion comment="/usr/bin/pbmtomgr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2130"/>
              <criterion comment="/usr/bin/pbmtomgr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2129"/>
              <criterion comment="/usr/bin/pbmtomgr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2128"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtonokia is executable">
              <criterion comment="/usr/bin/pbmtonokia is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2127"/>
              <criterion comment="/usr/bin/pbmtonokia is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2126"/>
              <criterion comment="/usr/bin/pbmtonokia is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2125"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtopgm is executable">
              <criterion comment="/usr/bin/pbmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2124"/>
              <criterion comment="/usr/bin/pbmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2123"/>
              <criterion comment="/usr/bin/pbmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2122"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtopi3 is executable">
              <criterion comment="/usr/bin/pbmtopi3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2121"/>
              <criterion comment="/usr/bin/pbmtopi3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2120"/>
              <criterion comment="/usr/bin/pbmtopi3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2119"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtopk is executable">
              <criterion comment="/usr/bin/pbmtopk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2118"/>
              <criterion comment="/usr/bin/pbmtopk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2117"/>
              <criterion comment="/usr/bin/pbmtopk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2116"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoplot is executable">
              <criterion comment="/usr/bin/pbmtoplot is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2115"/>
              <criterion comment="/usr/bin/pbmtoplot is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2114"/>
              <criterion comment="/usr/bin/pbmtoplot is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2113"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoppa is executable">
              <criterion comment="/usr/bin/pbmtoppa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2112"/>
              <criterion comment="/usr/bin/pbmtoppa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2111"/>
              <criterion comment="/usr/bin/pbmtoppa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2110"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtopsg3 is executable">
              <criterion comment="/usr/bin/pbmtopsg3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2109"/>
              <criterion comment="/usr/bin/pbmtopsg3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2108"/>
              <criterion comment="/usr/bin/pbmtopsg3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2107"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoptx is executable">
              <criterion comment="/usr/bin/pbmtoptx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2106"/>
              <criterion comment="/usr/bin/pbmtoptx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2105"/>
              <criterion comment="/usr/bin/pbmtoptx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2104"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtowbmp is executable">
              <criterion comment="/usr/bin/pbmtowbmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2103"/>
              <criterion comment="/usr/bin/pbmtowbmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2102"/>
              <criterion comment="/usr/bin/pbmtowbmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2101"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtox10bm is executable">
              <criterion comment="/usr/bin/pbmtox10bm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2100"/>
              <criterion comment="/usr/bin/pbmtox10bm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2099"/>
              <criterion comment="/usr/bin/pbmtox10bm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2098"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoxbm is executable">
              <criterion comment="/usr/bin/pbmtoxbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2097"/>
              <criterion comment="/usr/bin/pbmtoxbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2096"/>
              <criterion comment="/usr/bin/pbmtoxbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2095"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoybm is executable">
              <criterion comment="/usr/bin/pbmtoybm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2094"/>
              <criterion comment="/usr/bin/pbmtoybm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2093"/>
              <criterion comment="/usr/bin/pbmtoybm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2092"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtozinc is executable">
              <criterion comment="/usr/bin/pbmtozinc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2091"/>
              <criterion comment="/usr/bin/pbmtozinc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2090"/>
              <criterion comment="/usr/bin/pbmtozinc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2089"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmupc is executable">
              <criterion comment="/usr/bin/pbmupc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2088"/>
              <criterion comment="/usr/bin/pbmupc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2087"/>
              <criterion comment="/usr/bin/pbmupc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2086"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pcxtoppm is executable">
              <criterion comment="/usr/bin/pcxtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2085"/>
              <criterion comment="/usr/bin/pcxtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2084"/>
              <criterion comment="/usr/bin/pcxtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2083"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmbentley is executable">
              <criterion comment="/usr/bin/pgmbentley is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2082"/>
              <criterion comment="/usr/bin/pgmbentley is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2081"/>
              <criterion comment="/usr/bin/pgmbentley is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2080"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmcrater is executable">
              <criterion comment="/usr/bin/pgmcrater is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2079"/>
              <criterion comment="/usr/bin/pgmcrater is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2078"/>
              <criterion comment="/usr/bin/pgmcrater is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2077"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmedge is executable">
              <criterion comment="/usr/bin/pgmedge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2076"/>
              <criterion comment="/usr/bin/pgmedge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2075"/>
              <criterion comment="/usr/bin/pgmedge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2074"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmenhance is executable">
              <criterion comment="/usr/bin/pgmenhance is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2073"/>
              <criterion comment="/usr/bin/pgmenhance is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2072"/>
              <criterion comment="/usr/bin/pgmenhance is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2071"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmhist is executable">
              <criterion comment="/usr/bin/pgmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2070"/>
              <criterion comment="/usr/bin/pgmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2069"/>
              <criterion comment="/usr/bin/pgmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2068"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmkernel is executable">
              <criterion comment="/usr/bin/pgmkernel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2067"/>
              <criterion comment="/usr/bin/pgmkernel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2066"/>
              <criterion comment="/usr/bin/pgmkernel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2065"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmnoise is executable">
              <criterion comment="/usr/bin/pgmnoise is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2064"/>
              <criterion comment="/usr/bin/pgmnoise is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2063"/>
              <criterion comment="/usr/bin/pgmnoise is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2062"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmnorm is executable">
              <criterion comment="/usr/bin/pgmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2061"/>
              <criterion comment="/usr/bin/pgmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2060"/>
              <criterion comment="/usr/bin/pgmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2059"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmoil is executable">
              <criterion comment="/usr/bin/pgmoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2058"/>
              <criterion comment="/usr/bin/pgmoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2057"/>
              <criterion comment="/usr/bin/pgmoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2056"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmramp is executable">
              <criterion comment="/usr/bin/pgmramp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2055"/>
              <criterion comment="/usr/bin/pgmramp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2054"/>
              <criterion comment="/usr/bin/pgmramp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2053"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmslice is executable">
              <criterion comment="/usr/bin/pgmslice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2052"/>
              <criterion comment="/usr/bin/pgmslice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2051"/>
              <criterion comment="/usr/bin/pgmslice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2050"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtexture is executable">
              <criterion comment="/usr/bin/pgmtexture is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2049"/>
              <criterion comment="/usr/bin/pgmtexture is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2048"/>
              <criterion comment="/usr/bin/pgmtexture is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2047"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtofs is executable">
              <criterion comment="/usr/bin/pgmtofs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2046"/>
              <criterion comment="/usr/bin/pgmtofs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2045"/>
              <criterion comment="/usr/bin/pgmtofs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2044"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtolispm is executable">
              <criterion comment="/usr/bin/pgmtolispm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2043"/>
              <criterion comment="/usr/bin/pgmtolispm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2042"/>
              <criterion comment="/usr/bin/pgmtolispm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2041"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtopbm is executable">
              <criterion comment="/usr/bin/pgmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2040"/>
              <criterion comment="/usr/bin/pgmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2039"/>
              <criterion comment="/usr/bin/pgmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2038"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtoppm is executable">
              <criterion comment="/usr/bin/pgmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2037"/>
              <criterion comment="/usr/bin/pgmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2036"/>
              <criterion comment="/usr/bin/pgmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2035"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pi1toppm is executable">
              <criterion comment="/usr/bin/pi1toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2034"/>
              <criterion comment="/usr/bin/pi1toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2033"/>
              <criterion comment="/usr/bin/pi1toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2032"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pi3topbm is executable">
              <criterion comment="/usr/bin/pi3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2031"/>
              <criterion comment="/usr/bin/pi3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2030"/>
              <criterion comment="/usr/bin/pi3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2029"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pjtoppm is executable">
              <criterion comment="/usr/bin/pjtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2028"/>
              <criterion comment="/usr/bin/pjtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2027"/>
              <criterion comment="/usr/bin/pjtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2026"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pktopbm is executable">
              <criterion comment="/usr/bin/pktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2025"/>
              <criterion comment="/usr/bin/pktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2024"/>
              <criterion comment="/usr/bin/pktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2023"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pngtopnm is executable">
              <criterion comment="/usr/bin/pngtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2022"/>
              <criterion comment="/usr/bin/pngtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2021"/>
              <criterion comment="/usr/bin/pngtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2020"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmalias is executable">
              <criterion comment="/usr/bin/pnmalias is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2019"/>
              <criterion comment="/usr/bin/pnmalias is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2018"/>
              <criterion comment="/usr/bin/pnmalias is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2017"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmarith is executable">
              <criterion comment="/usr/bin/pnmarith is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2016"/>
              <criterion comment="/usr/bin/pnmarith is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2015"/>
              <criterion comment="/usr/bin/pnmarith is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2014"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcat is executable">
              <criterion comment="/usr/bin/pnmcat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2013"/>
              <criterion comment="/usr/bin/pnmcat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2012"/>
              <criterion comment="/usr/bin/pnmcat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2011"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcolormap is executable">
              <criterion comment="/usr/bin/pnmcolormap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2010"/>
              <criterion comment="/usr/bin/pnmcolormap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2009"/>
              <criterion comment="/usr/bin/pnmcolormap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2008"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcomp is executable">
              <criterion comment="/usr/bin/pnmcomp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2007"/>
              <criterion comment="/usr/bin/pnmcomp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2006"/>
              <criterion comment="/usr/bin/pnmcomp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2005"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmconvol is executable">
              <criterion comment="/usr/bin/pnmconvol is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2004"/>
              <criterion comment="/usr/bin/pnmconvol is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2003"/>
              <criterion comment="/usr/bin/pnmconvol is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2002"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcrop is executable">
              <criterion comment="/usr/bin/pnmcrop is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2001"/>
              <criterion comment="/usr/bin/pnmcrop is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2000"/>
              <criterion comment="/usr/bin/pnmcrop is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1999"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcut is executable">
              <criterion comment="/usr/bin/pnmcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1998"/>
              <criterion comment="/usr/bin/pnmcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1997"/>
              <criterion comment="/usr/bin/pnmcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1996"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmdepth is executable">
              <criterion comment="/usr/bin/pnmdepth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1995"/>
              <criterion comment="/usr/bin/pnmdepth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1994"/>
              <criterion comment="/usr/bin/pnmdepth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1993"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmenlarge is executable">
              <criterion comment="/usr/bin/pnmenlarge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1992"/>
              <criterion comment="/usr/bin/pnmenlarge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1991"/>
              <criterion comment="/usr/bin/pnmenlarge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1990"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmfile is executable">
              <criterion comment="/usr/bin/pnmfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1989"/>
              <criterion comment="/usr/bin/pnmfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1988"/>
              <criterion comment="/usr/bin/pnmfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1987"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmflip is executable">
              <criterion comment="/usr/bin/pnmflip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1986"/>
              <criterion comment="/usr/bin/pnmflip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1985"/>
              <criterion comment="/usr/bin/pnmflip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1984"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmgamma is executable">
              <criterion comment="/usr/bin/pnmgamma is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1983"/>
              <criterion comment="/usr/bin/pnmgamma is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1982"/>
              <criterion comment="/usr/bin/pnmgamma is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1981"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmhisteq is executable">
              <criterion comment="/usr/bin/pnmhisteq is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1980"/>
              <criterion comment="/usr/bin/pnmhisteq is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1979"/>
              <criterion comment="/usr/bin/pnmhisteq is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1978"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmhistmap is executable">
              <criterion comment="/usr/bin/pnmhistmap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1977"/>
              <criterion comment="/usr/bin/pnmhistmap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1976"/>
              <criterion comment="/usr/bin/pnmhistmap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1975"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnminterp is executable">
              <criterion comment="/usr/bin/pnminterp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1974"/>
              <criterion comment="/usr/bin/pnminterp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1973"/>
              <criterion comment="/usr/bin/pnminterp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1972"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnminvert is executable">
              <criterion comment="/usr/bin/pnminvert is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1971"/>
              <criterion comment="/usr/bin/pnminvert is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1970"/>
              <criterion comment="/usr/bin/pnminvert is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1969"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmmontage is executable">
              <criterion comment="/usr/bin/pnmmontage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1968"/>
              <criterion comment="/usr/bin/pnmmontage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1967"/>
              <criterion comment="/usr/bin/pnmmontage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1966"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmnlfilt is executable">
              <criterion comment="/usr/bin/pnmnlfilt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1965"/>
              <criterion comment="/usr/bin/pnmnlfilt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1964"/>
              <criterion comment="/usr/bin/pnmnlfilt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1963"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmnoraw is executable">
              <criterion comment="/usr/bin/pnmnoraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1962"/>
              <criterion comment="/usr/bin/pnmnoraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1961"/>
              <criterion comment="/usr/bin/pnmnoraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1960"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmpad is executable">
              <criterion comment="/usr/bin/pnmpad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1959"/>
              <criterion comment="/usr/bin/pnmpad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1958"/>
              <criterion comment="/usr/bin/pnmpad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1957"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmpaste is executable">
              <criterion comment="/usr/bin/pnmpaste is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1956"/>
              <criterion comment="/usr/bin/pnmpaste is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1955"/>
              <criterion comment="/usr/bin/pnmpaste is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1954"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmpsnr is executable">
              <criterion comment="/usr/bin/pnmpsnr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1953"/>
              <criterion comment="/usr/bin/pnmpsnr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1952"/>
              <criterion comment="/usr/bin/pnmpsnr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1951"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmremap is executable">
              <criterion comment="/usr/bin/pnmremap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1950"/>
              <criterion comment="/usr/bin/pnmremap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1949"/>
              <criterion comment="/usr/bin/pnmremap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1948"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmrotate is executable">
              <criterion comment="/usr/bin/pnmrotate is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1947"/>
              <criterion comment="/usr/bin/pnmrotate is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1946"/>
              <criterion comment="/usr/bin/pnmrotate is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1945"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmscale is executable">
              <criterion comment="/usr/bin/pnmscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1944"/>
              <criterion comment="/usr/bin/pnmscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1943"/>
              <criterion comment="/usr/bin/pnmscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1942"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopict is executable">
              <criterion comment="/usr/bin/ppmtopict is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1941"/>
              <criterion comment="/usr/bin/ppmtopict is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1940"/>
              <criterion comment="/usr/bin/ppmtopict is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1939"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopj is executable">
              <criterion comment="/usr/bin/ppmtopj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1938"/>
              <criterion comment="/usr/bin/ppmtopj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1937"/>
              <criterion comment="/usr/bin/ppmtopj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1936"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopjxl is executable">
              <criterion comment="/usr/bin/ppmtopjxl is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1935"/>
              <criterion comment="/usr/bin/ppmtopjxl is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1934"/>
              <criterion comment="/usr/bin/ppmtopjxl is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1933"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopuzz is executable">
              <criterion comment="/usr/bin/ppmtopuzz is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1932"/>
              <criterion comment="/usr/bin/ppmtopuzz is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1931"/>
              <criterion comment="/usr/bin/ppmtopuzz is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1930"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtorgb3 is executable">
              <criterion comment="/usr/bin/ppmtorgb3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1929"/>
              <criterion comment="/usr/bin/ppmtorgb3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1928"/>
              <criterion comment="/usr/bin/ppmtorgb3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1927"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtosixel is executable">
              <criterion comment="/usr/bin/ppmtosixel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1926"/>
              <criterion comment="/usr/bin/ppmtosixel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1925"/>
              <criterion comment="/usr/bin/ppmtosixel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1924"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtotga is executable">
              <criterion comment="/usr/bin/ppmtotga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1923"/>
              <criterion comment="/usr/bin/ppmtotga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1922"/>
              <criterion comment="/usr/bin/ppmtotga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1921"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtouil is executable">
              <criterion comment="/usr/bin/ppmtouil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1920"/>
              <criterion comment="/usr/bin/ppmtouil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1919"/>
              <criterion comment="/usr/bin/ppmtouil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1918"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtowinicon is executable">
              <criterion comment="/usr/bin/ppmtowinicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1917"/>
              <criterion comment="/usr/bin/ppmtowinicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1916"/>
              <criterion comment="/usr/bin/ppmtowinicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1915"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoxpm is executable">
              <criterion comment="/usr/bin/ppmtoxpm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1914"/>
              <criterion comment="/usr/bin/ppmtoxpm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1913"/>
              <criterion comment="/usr/bin/ppmtoxpm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1912"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoyuv is executable">
              <criterion comment="/usr/bin/ppmtoyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1911"/>
              <criterion comment="/usr/bin/ppmtoyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1910"/>
              <criterion comment="/usr/bin/ppmtoyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1909"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoyuvsplit is executable">
              <criterion comment="/usr/bin/ppmtoyuvsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1908"/>
              <criterion comment="/usr/bin/ppmtoyuvsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1907"/>
              <criterion comment="/usr/bin/ppmtoyuvsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1906"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtv is executable">
              <criterion comment="/usr/bin/ppmtv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1905"/>
              <criterion comment="/usr/bin/ppmtv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1904"/>
              <criterion comment="/usr/bin/ppmtv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1903"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/psidtopgm is executable">
              <criterion comment="/usr/bin/psidtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1902"/>
              <criterion comment="/usr/bin/psidtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1901"/>
              <criterion comment="/usr/bin/psidtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1900"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pstopnm is executable">
              <criterion comment="/usr/bin/pstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1899"/>
              <criterion comment="/usr/bin/pstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1898"/>
              <criterion comment="/usr/bin/pstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1897"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/qrttoppm is executable">
              <criterion comment="/usr/bin/qrttoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1896"/>
              <criterion comment="/usr/bin/qrttoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1895"/>
              <criterion comment="/usr/bin/qrttoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1894"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rasttopnm is executable">
              <criterion comment="/usr/bin/rasttopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1893"/>
              <criterion comment="/usr/bin/rasttopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1892"/>
              <criterion comment="/usr/bin/rasttopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1891"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rawtopgm is executable">
              <criterion comment="/usr/bin/rawtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1890"/>
              <criterion comment="/usr/bin/rawtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1889"/>
              <criterion comment="/usr/bin/rawtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1888"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rawtoppm is executable">
              <criterion comment="/usr/bin/rawtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1887"/>
              <criterion comment="/usr/bin/rawtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1886"/>
              <criterion comment="/usr/bin/rawtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1885"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rgb3toppm is executable">
              <criterion comment="/usr/bin/rgb3toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1884"/>
              <criterion comment="/usr/bin/rgb3toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1883"/>
              <criterion comment="/usr/bin/rgb3toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1882"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rletopnm is executable">
              <criterion comment="/usr/bin/rletopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1881"/>
              <criterion comment="/usr/bin/rletopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1880"/>
              <criterion comment="/usr/bin/rletopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1879"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sbigtopgm is executable">
              <criterion comment="/usr/bin/sbigtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1878"/>
              <criterion comment="/usr/bin/sbigtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1877"/>
              <criterion comment="/usr/bin/sbigtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1876"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sgitopnm is executable">
              <criterion comment="/usr/bin/sgitopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1875"/>
              <criterion comment="/usr/bin/sgitopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1874"/>
              <criterion comment="/usr/bin/sgitopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1873"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sirtopnm is executable">
              <criterion comment="/usr/bin/sirtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1872"/>
              <criterion comment="/usr/bin/sirtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1871"/>
              <criterion comment="/usr/bin/sirtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1870"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sldtoppm is executable">
              <criterion comment="/usr/bin/sldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1869"/>
              <criterion comment="/usr/bin/sldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1868"/>
              <criterion comment="/usr/bin/sldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1867"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/spctoppm is executable">
              <criterion comment="/usr/bin/spctoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1866"/>
              <criterion comment="/usr/bin/spctoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1865"/>
              <criterion comment="/usr/bin/spctoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1864"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/spottopgm is executable">
              <criterion comment="/usr/bin/spottopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1863"/>
              <criterion comment="/usr/bin/spottopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1862"/>
              <criterion comment="/usr/bin/spottopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1861"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sputoppm is executable">
              <criterion comment="/usr/bin/sputoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1860"/>
              <criterion comment="/usr/bin/sputoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1859"/>
              <criterion comment="/usr/bin/sputoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1858"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tgatoppm is executable">
              <criterion comment="/usr/bin/tgatoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1857"/>
              <criterion comment="/usr/bin/tgatoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1856"/>
              <criterion comment="/usr/bin/tgatoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1855"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/thinkjettopbm is executable">
              <criterion comment="/usr/bin/thinkjettopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1854"/>
              <criterion comment="/usr/bin/thinkjettopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1853"/>
              <criterion comment="/usr/bin/thinkjettopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1852"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tifftopnm is executable">
              <criterion comment="/usr/bin/tifftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1851"/>
              <criterion comment="/usr/bin/tifftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1850"/>
              <criterion comment="/usr/bin/tifftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1849"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/wbmptopbm is executable">
              <criterion comment="/usr/bin/wbmptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1848"/>
              <criterion comment="/usr/bin/wbmptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1847"/>
              <criterion comment="/usr/bin/wbmptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1846"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/winicontoppm is executable">
              <criterion comment="/usr/bin/winicontoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1845"/>
              <criterion comment="/usr/bin/winicontoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1844"/>
              <criterion comment="/usr/bin/winicontoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1843"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xbmtopbm is executable">
              <criterion comment="/usr/bin/xbmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1842"/>
              <criterion comment="/usr/bin/xbmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1841"/>
              <criterion comment="/usr/bin/xbmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1840"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ximtoppm is executable">
              <criterion comment="/usr/bin/ximtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1839"/>
              <criterion comment="/usr/bin/ximtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1838"/>
              <criterion comment="/usr/bin/ximtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1837"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xpmtoppm is executable">
              <criterion comment="/usr/bin/xpmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1836"/>
              <criterion comment="/usr/bin/xpmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1835"/>
              <criterion comment="/usr/bin/xpmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1834"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xvminitoppm is executable">
              <criterion comment="/usr/bin/xvminitoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1833"/>
              <criterion comment="/usr/bin/xvminitoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1832"/>
              <criterion comment="/usr/bin/xvminitoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1831"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xwdtopnm is executable">
              <criterion comment="/usr/bin/xwdtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1830"/>
              <criterion comment="/usr/bin/xwdtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1829"/>
              <criterion comment="/usr/bin/xwdtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1828"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ybmtopbm is executable">
              <criterion comment="/usr/bin/ybmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1827"/>
              <criterion comment="/usr/bin/ybmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1826"/>
              <criterion comment="/usr/bin/ybmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1825"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/yuvsplittoppm is executable">
              <criterion comment="/usr/bin/yuvsplittoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1824"/>
              <criterion comment="/usr/bin/yuvsplittoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1823"/>
              <criterion comment="/usr/bin/yuvsplittoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1822"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/yuvtoppm is executable">
              <criterion comment="/usr/bin/yuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1821"/>
              <criterion comment="/usr/bin/yuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1820"/>
              <criterion comment="/usr/bin/yuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1819"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/zeisstopnm is executable">
              <criterion comment="/usr/bin/zeisstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1818"/>
              <criterion comment="/usr/bin/zeisstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1817"/>
              <criterion comment="/usr/bin/zeisstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1816"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmscalefixed is executable">
              <criterion comment="/usr/bin/pnmscalefixed is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1815"/>
              <criterion comment="/usr/bin/pnmscalefixed is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1814"/>
              <criterion comment="/usr/bin/pnmscalefixed is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1813"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmshear is executable">
              <criterion comment="/usr/bin/pnmshear is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1812"/>
              <criterion comment="/usr/bin/pnmshear is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1811"/>
              <criterion comment="/usr/bin/pnmshear is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1810"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmsmooth is executable">
              <criterion comment="/usr/bin/pnmsmooth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1809"/>
              <criterion comment="/usr/bin/pnmsmooth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1808"/>
              <criterion comment="/usr/bin/pnmsmooth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1807"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmsplit is executable">
              <criterion comment="/usr/bin/pnmsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1806"/>
              <criterion comment="/usr/bin/pnmsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1805"/>
              <criterion comment="/usr/bin/pnmsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1804"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtile is executable">
              <criterion comment="/usr/bin/pnmtile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1803"/>
              <criterion comment="/usr/bin/pnmtile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1802"/>
              <criterion comment="/usr/bin/pnmtile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1801"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtoddif is executable">
              <criterion comment="/usr/bin/pnmtoddif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1800"/>
              <criterion comment="/usr/bin/pnmtoddif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1799"/>
              <criterion comment="/usr/bin/pnmtoddif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1798"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtofiasco is executable">
              <criterion comment="/usr/bin/pnmtofiasco is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1797"/>
              <criterion comment="/usr/bin/pnmtofiasco is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1796"/>
              <criterion comment="/usr/bin/pnmtofiasco is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1795"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtofits is executable">
              <criterion comment="/usr/bin/pnmtofits is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1794"/>
              <criterion comment="/usr/bin/pnmtofits is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1793"/>
              <criterion comment="/usr/bin/pnmtofits is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1792"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtojpeg is executable">
              <criterion comment="/usr/bin/pnmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1791"/>
              <criterion comment="/usr/bin/pnmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1790"/>
              <criterion comment="/usr/bin/pnmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1789"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtopalm is executable">
              <criterion comment="/usr/bin/pnmtopalm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1788"/>
              <criterion comment="/usr/bin/pnmtopalm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1787"/>
              <criterion comment="/usr/bin/pnmtopalm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1786"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtoplainpnm is executable">
              <criterion comment="/usr/bin/pnmtoplainpnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1785"/>
              <criterion comment="/usr/bin/pnmtoplainpnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1784"/>
              <criterion comment="/usr/bin/pnmtoplainpnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1783"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtopng is executable">
              <criterion comment="/usr/bin/pnmtopng is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1782"/>
              <criterion comment="/usr/bin/pnmtopng is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1781"/>
              <criterion comment="/usr/bin/pnmtopng is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1780"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtops is executable">
              <criterion comment="/usr/bin/pnmtops is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1779"/>
              <criterion comment="/usr/bin/pnmtops is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1778"/>
              <criterion comment="/usr/bin/pnmtops is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1777"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtorast is executable">
              <criterion comment="/usr/bin/pnmtorast is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1776"/>
              <criterion comment="/usr/bin/pnmtorast is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1775"/>
              <criterion comment="/usr/bin/pnmtorast is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1774"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtorle is executable">
              <criterion comment="/usr/bin/pnmtorle is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1773"/>
              <criterion comment="/usr/bin/pnmtorle is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1772"/>
              <criterion comment="/usr/bin/pnmtorle is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1771"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtosgi is executable">
              <criterion comment="/usr/bin/pnmtosgi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1770"/>
              <criterion comment="/usr/bin/pnmtosgi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1769"/>
              <criterion comment="/usr/bin/pnmtosgi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1768"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtosir is executable">
              <criterion comment="/usr/bin/pnmtosir is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1767"/>
              <criterion comment="/usr/bin/pnmtosir is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1766"/>
              <criterion comment="/usr/bin/pnmtosir is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1765"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtotiff is executable">
              <criterion comment="/usr/bin/pnmtotiff is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1764"/>
              <criterion comment="/usr/bin/pnmtotiff is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1763"/>
              <criterion comment="/usr/bin/pnmtotiff is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1762"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtotiffcmyk is executable">
              <criterion comment="/usr/bin/pnmtotiffcmyk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1761"/>
              <criterion comment="/usr/bin/pnmtotiffcmyk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1760"/>
              <criterion comment="/usr/bin/pnmtotiffcmyk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1759"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtoxwd is executable">
              <criterion comment="/usr/bin/pnmtoxwd is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1758"/>
              <criterion comment="/usr/bin/pnmtoxwd is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1757"/>
              <criterion comment="/usr/bin/pnmtoxwd is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1756"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppm3d is executable">
              <criterion comment="/usr/bin/ppm3d is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1755"/>
              <criterion comment="/usr/bin/ppm3d is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1754"/>
              <criterion comment="/usr/bin/ppm3d is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1753"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmbrighten is executable">
              <criterion comment="/usr/bin/ppmbrighten is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1752"/>
              <criterion comment="/usr/bin/ppmbrighten is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1751"/>
              <criterion comment="/usr/bin/ppmbrighten is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1750"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmchange is executable">
              <criterion comment="/usr/bin/ppmchange is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1749"/>
              <criterion comment="/usr/bin/ppmchange is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1748"/>
              <criterion comment="/usr/bin/ppmchange is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1747"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmcie is executable">
              <criterion comment="/usr/bin/ppmcie is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1746"/>
              <criterion comment="/usr/bin/ppmcie is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1745"/>
              <criterion comment="/usr/bin/ppmcie is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1744"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmcolormask is executable">
              <criterion comment="/usr/bin/ppmcolormask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1743"/>
              <criterion comment="/usr/bin/ppmcolormask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1742"/>
              <criterion comment="/usr/bin/ppmcolormask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1741"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmcolors is executable">
              <criterion comment="/usr/bin/ppmcolors is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1740"/>
              <criterion comment="/usr/bin/ppmcolors is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1739"/>
              <criterion comment="/usr/bin/ppmcolors is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1738"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmdim is executable">
              <criterion comment="/usr/bin/ppmdim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1737"/>
              <criterion comment="/usr/bin/ppmdim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1736"/>
              <criterion comment="/usr/bin/ppmdim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1735"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmdist is executable">
              <criterion comment="/usr/bin/ppmdist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1734"/>
              <criterion comment="/usr/bin/ppmdist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1733"/>
              <criterion comment="/usr/bin/ppmdist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1732"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmdither is executable">
              <criterion comment="/usr/bin/ppmdither is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1731"/>
              <criterion comment="/usr/bin/ppmdither is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1730"/>
              <criterion comment="/usr/bin/ppmdither is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1729"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmflash is executable">
              <criterion comment="/usr/bin/ppmflash is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1728"/>
              <criterion comment="/usr/bin/ppmflash is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1727"/>
              <criterion comment="/usr/bin/ppmflash is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1726"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmforge is executable">
              <criterion comment="/usr/bin/ppmforge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1725"/>
              <criterion comment="/usr/bin/ppmforge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1724"/>
              <criterion comment="/usr/bin/ppmforge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1723"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmhist is executable">
              <criterion comment="/usr/bin/ppmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1722"/>
              <criterion comment="/usr/bin/ppmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1721"/>
              <criterion comment="/usr/bin/ppmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1720"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmlabel is executable">
              <criterion comment="/usr/bin/ppmlabel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1719"/>
              <criterion comment="/usr/bin/ppmlabel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1718"/>
              <criterion comment="/usr/bin/ppmlabel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1717"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmmake is executable">
              <criterion comment="/usr/bin/ppmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1716"/>
              <criterion comment="/usr/bin/ppmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1715"/>
              <criterion comment="/usr/bin/ppmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1714"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmmix is executable">
              <criterion comment="/usr/bin/ppmmix is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1713"/>
              <criterion comment="/usr/bin/ppmmix is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1712"/>
              <criterion comment="/usr/bin/ppmmix is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1711"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmnorm is executable">
              <criterion comment="/usr/bin/ppmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1710"/>
              <criterion comment="/usr/bin/ppmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1709"/>
              <criterion comment="/usr/bin/ppmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1708"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmntsc is executable">
              <criterion comment="/usr/bin/ppmntsc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1707"/>
              <criterion comment="/usr/bin/ppmntsc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1706"/>
              <criterion comment="/usr/bin/ppmntsc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1705"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmpat is executable">
              <criterion comment="/usr/bin/ppmpat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1704"/>
              <criterion comment="/usr/bin/ppmpat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1703"/>
              <criterion comment="/usr/bin/ppmpat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1702"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmquant is executable">
              <criterion comment="/usr/bin/ppmquant is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1701"/>
              <criterion comment="/usr/bin/ppmquant is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1700"/>
              <criterion comment="/usr/bin/ppmquant is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1699"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmqvga is executable">
              <criterion comment="/usr/bin/ppmqvga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1698"/>
              <criterion comment="/usr/bin/ppmqvga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1697"/>
              <criterion comment="/usr/bin/ppmqvga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1696"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmrelief is executable">
              <criterion comment="/usr/bin/ppmrelief is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1695"/>
              <criterion comment="/usr/bin/ppmrelief is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1694"/>
              <criterion comment="/usr/bin/ppmrelief is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1693"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmshift is executable">
              <criterion comment="/usr/bin/ppmshift is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1692"/>
              <criterion comment="/usr/bin/ppmshift is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1691"/>
              <criterion comment="/usr/bin/ppmshift is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1690"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmspread is executable">
              <criterion comment="/usr/bin/ppmspread is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1689"/>
              <criterion comment="/usr/bin/ppmspread is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1688"/>
              <criterion comment="/usr/bin/ppmspread is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1687"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoacad is executable">
              <criterion comment="/usr/bin/ppmtoacad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1686"/>
              <criterion comment="/usr/bin/ppmtoacad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1685"/>
              <criterion comment="/usr/bin/ppmtoacad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1684"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtobmp is executable">
              <criterion comment="/usr/bin/ppmtobmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1683"/>
              <criterion comment="/usr/bin/ppmtobmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1682"/>
              <criterion comment="/usr/bin/ppmtobmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1681"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoeyuv is executable">
              <criterion comment="/usr/bin/ppmtoeyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1680"/>
              <criterion comment="/usr/bin/ppmtoeyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1679"/>
              <criterion comment="/usr/bin/ppmtoeyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1678"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtogif is executable">
              <criterion comment="/usr/bin/ppmtogif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1677"/>
              <criterion comment="/usr/bin/ppmtogif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1676"/>
              <criterion comment="/usr/bin/ppmtogif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1675"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoicr is executable">
              <criterion comment="/usr/bin/ppmtoicr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1674"/>
              <criterion comment="/usr/bin/ppmtoicr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1673"/>
              <criterion comment="/usr/bin/ppmtoicr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1672"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoilbm is executable">
              <criterion comment="/usr/bin/ppmtoilbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1671"/>
              <criterion comment="/usr/bin/ppmtoilbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1670"/>
              <criterion comment="/usr/bin/ppmtoilbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1669"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtojpeg is executable">
              <criterion comment="/usr/bin/ppmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1668"/>
              <criterion comment="/usr/bin/ppmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1667"/>
              <criterion comment="/usr/bin/ppmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1666"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoleaf is executable">
              <criterion comment="/usr/bin/ppmtoleaf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1665"/>
              <criterion comment="/usr/bin/ppmtoleaf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1664"/>
              <criterion comment="/usr/bin/ppmtoleaf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1663"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtolj is executable">
              <criterion comment="/usr/bin/ppmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1662"/>
              <criterion comment="/usr/bin/ppmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1661"/>
              <criterion comment="/usr/bin/ppmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1660"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtomitsu is executable">
              <criterion comment="/usr/bin/ppmtomitsu is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1659"/>
              <criterion comment="/usr/bin/ppmtomitsu is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1658"/>
              <criterion comment="/usr/bin/ppmtomitsu is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1657"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtompeg is executable">
              <criterion comment="/usr/bin/ppmtompeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1656"/>
              <criterion comment="/usr/bin/ppmtompeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1655"/>
              <criterion comment="/usr/bin/ppmtompeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1654"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoneo is executable">
              <criterion comment="/usr/bin/ppmtoneo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1653"/>
              <criterion comment="/usr/bin/ppmtoneo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1652"/>
              <criterion comment="/usr/bin/ppmtoneo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1651"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopcx is executable">
              <criterion comment="/usr/bin/ppmtopcx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1650"/>
              <criterion comment="/usr/bin/ppmtopcx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1649"/>
              <criterion comment="/usr/bin/ppmtopcx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1648"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopgm is executable">
              <criterion comment="/usr/bin/ppmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1647"/>
              <criterion comment="/usr/bin/ppmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1646"/>
              <criterion comment="/usr/bin/ppmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1645"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopi1 is executable">
              <criterion comment="/usr/bin/ppmtopi1 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1644"/>
              <criterion comment="/usr/bin/ppmtopi1 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1643"/>
              <criterion comment="/usr/bin/ppmtopi1 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1642"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:806" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat XFree86 Buffer Overflow in ReadFontAlias</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>XFree86</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0083" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0083"/>
        <description>Buffer overflow in ReadFontAlias from dirfile.c of XFree86 4.1.0 through 4.3.0 allows local users and remote attackers to execute arbitrary code via a font alias file (font.alias) with a long token, a different vulnerability than CVE-2004-0084 and CVE-2004-0106.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="XFree86 version is less than 4.3.0-2.90.55" negate="false" test_ref="oval:org.mitre.oval:tst:1641"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
            <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1640"/>
            <criteria operator="OR" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1639"/>
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1638"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:807" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat XFree86 Buffer Overflow in ReadFontAlias II</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>XFree86</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0084" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0084"/>
        <description>Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a different vulnerability than CVE-2004-0083 and CVE-2004-0106.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="XFree86 version is less than 4.3.0-2.90.55" negate="false" test_ref="oval:org.mitre.oval:tst:1641"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
            <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1640"/>
            <criteria operator="OR" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1639"/>
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1638"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:808" version="1" class="vulnerability">
      <metadata>
        <title>RHE4 XBL Script Security Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2261" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2261"/>
        <description>Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts even when Javascript has been disabled, which makes it easier for remote attackers to bypass such protection.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 4 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2652"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false" test_ref="oval:org.mitre.oval:tst:2651"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:809" version="1" class="vulnerability">
      <metadata>
        <title>XFree86 Font File Handling Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>XFree86</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0106" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0106"/>
        <description>Multiple unknown vulnerabilities in XFree86 4.1.0 to 4.3.0, related to improper handling of font files, a different set of vulnerabilities than CVE-2004-0083 and CVE-2004-0084.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="XFree86 version is less than 4.3.0-2.90.55" negate="false" test_ref="oval:org.mitre.oval:tst:1641"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
            <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1640"/>
            <criteria operator="OR" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1639"/>
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1638"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:810" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 netpbm File Overwrite Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>netpbm</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0924" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0924"/>
        <description>netpbm 9.25 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="netpbm version is less than 9.24-11.30.1" negate="false" test_ref="oval:org.mitre.oval:tst:1637"/>
            <criterion comment="netpbm-devel version is less than 9.24-11.30.1" negate="false" test_ref="oval:org.mitre.oval:tst:1636"/>
            <criterion comment="netpbm-progs version is less than 9.24-11.30.1" negate="false" test_ref="oval:org.mitre.oval:tst:1635"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable configuration">
            <criteria operator="OR" comment="/usr/bin/411toppm is executable">
              <criterion comment="/usr/bin/411toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2316"/>
              <criterion comment="/usr/bin/411toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2315"/>
              <criterion comment="/usr/bin/411toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2314"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/asciitopgm is executable">
              <criterion comment="/usr/bin/asciitopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2313"/>
              <criterion comment="/usr/bin/asciitopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2312"/>
              <criterion comment="/usr/bin/asciitopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2311"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/atktopbm is executable">
              <criterion comment="/usr/bin/atktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2310"/>
              <criterion comment="/usr/bin/atktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2309"/>
              <criterion comment="/usr/bin/atktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2308"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/bioradtopgm is executable">
              <criterion comment="/usr/bin/bioradtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2307"/>
              <criterion comment="/usr/bin/bioradtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2306"/>
              <criterion comment="/usr/bin/bioradtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2305"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/bmptoppm is executable">
              <criterion comment="/usr/bin/bmptoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2304"/>
              <criterion comment="/usr/bin/bmptoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2303"/>
              <criterion comment="/usr/bin/bmptoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2302"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/brushtopbm is executable">
              <criterion comment="/usr/bin/brushtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2301"/>
              <criterion comment="/usr/bin/brushtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2300"/>
              <criterion comment="/usr/bin/brushtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2299"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/cmuwmtopbm is executable">
              <criterion comment="/usr/bin/cmuwmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2298"/>
              <criterion comment="/usr/bin/cmuwmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2297"/>
              <criterion comment="/usr/bin/cmuwmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2296"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/eyuvtoppm is executable">
              <criterion comment="/usr/bin/eyuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2295"/>
              <criterion comment="/usr/bin/eyuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2294"/>
              <criterion comment="/usr/bin/eyuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2293"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/fiascotopnm is executable">
              <criterion comment="/usr/bin/fiascotopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2292"/>
              <criterion comment="/usr/bin/fiascotopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2291"/>
              <criterion comment="/usr/bin/fiascotopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2290"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/fitstopnm is executable">
              <criterion comment="/usr/bin/fitstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2289"/>
              <criterion comment="/usr/bin/fitstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2288"/>
              <criterion comment="/usr/bin/fitstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2287"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/fstopgm is executable">
              <criterion comment="/usr/bin/fstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2286"/>
              <criterion comment="/usr/bin/fstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2285"/>
              <criterion comment="/usr/bin/fstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2284"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/g3topbm is executable">
              <criterion comment="/usr/bin/g3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2283"/>
              <criterion comment="/usr/bin/g3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2282"/>
              <criterion comment="/usr/bin/g3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2281"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/gemtopbm is executable">
              <criterion comment="/usr/bin/gemtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2280"/>
              <criterion comment="/usr/bin/gemtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2279"/>
              <criterion comment="/usr/bin/gemtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2278"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/gemtopnm is executable">
              <criterion comment="/usr/bin/gemtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2277"/>
              <criterion comment="/usr/bin/gemtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2276"/>
              <criterion comment="/usr/bin/gemtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2275"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/giftopnm is executable">
              <criterion comment="/usr/bin/giftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2274"/>
              <criterion comment="/usr/bin/giftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2273"/>
              <criterion comment="/usr/bin/giftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2272"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/gouldtoppm is executable">
              <criterion comment="/usr/bin/gouldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2271"/>
              <criterion comment="/usr/bin/gouldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2270"/>
              <criterion comment="/usr/bin/gouldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2269"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/hipstopgm is executable">
              <criterion comment="/usr/bin/hipstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2268"/>
              <criterion comment="/usr/bin/hipstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2267"/>
              <criterion comment="/usr/bin/hipstopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2266"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/hpcdtoppm is executable">
              <criterion comment="/usr/bin/hpcdtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2265"/>
              <criterion comment="/usr/bin/hpcdtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2264"/>
              <criterion comment="/usr/bin/hpcdtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2263"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/icontopbm is executable">
              <criterion comment="/usr/bin/icontopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2262"/>
              <criterion comment="/usr/bin/icontopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2261"/>
              <criterion comment="/usr/bin/icontopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2260"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ilbmtoppm is executable">
              <criterion comment="/usr/bin/ilbmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2259"/>
              <criterion comment="/usr/bin/ilbmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2258"/>
              <criterion comment="/usr/bin/ilbmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2257"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/imgtoppm is executable">
              <criterion comment="/usr/bin/imgtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2256"/>
              <criterion comment="/usr/bin/imgtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2255"/>
              <criterion comment="/usr/bin/imgtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2254"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/jpegtopnm is executable">
              <criterion comment="/usr/bin/jpegtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2253"/>
              <criterion comment="/usr/bin/jpegtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2252"/>
              <criterion comment="/usr/bin/jpegtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2251"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/leaftoppm is executable">
              <criterion comment="/usr/bin/leaftoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2250"/>
              <criterion comment="/usr/bin/leaftoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2249"/>
              <criterion comment="/usr/bin/leaftoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2248"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/lispmtopgm is executable">
              <criterion comment="/usr/bin/lispmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2247"/>
              <criterion comment="/usr/bin/lispmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2246"/>
              <criterion comment="/usr/bin/lispmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2245"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/macptopbm is executable">
              <criterion comment="/usr/bin/macptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2244"/>
              <criterion comment="/usr/bin/macptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2243"/>
              <criterion comment="/usr/bin/macptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2242"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/mdatopbm is executable">
              <criterion comment="/usr/bin/mdatopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2241"/>
              <criterion comment="/usr/bin/mdatopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2240"/>
              <criterion comment="/usr/bin/mdatopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2239"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/mgrtopbm is executable">
              <criterion comment="/usr/bin/mgrtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2238"/>
              <criterion comment="/usr/bin/mgrtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2237"/>
              <criterion comment="/usr/bin/mgrtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2236"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/mtvtoppm is executable">
              <criterion comment="/usr/bin/mtvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2235"/>
              <criterion comment="/usr/bin/mtvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2234"/>
              <criterion comment="/usr/bin/mtvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2233"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/neotoppm is executable">
              <criterion comment="/usr/bin/neotoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2232"/>
              <criterion comment="/usr/bin/neotoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2231"/>
              <criterion comment="/usr/bin/neotoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2230"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/palmtopnm is executable">
              <criterion comment="/usr/bin/palmtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2229"/>
              <criterion comment="/usr/bin/palmtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2228"/>
              <criterion comment="/usr/bin/palmtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2227"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamchannel is executable">
              <criterion comment="/usr/bin/pamchannel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2226"/>
              <criterion comment="/usr/bin/pamchannel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2225"/>
              <criterion comment="/usr/bin/pamchannel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2224"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamcut is executable">
              <criterion comment="/usr/bin/pamcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2223"/>
              <criterion comment="/usr/bin/pamcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2222"/>
              <criterion comment="/usr/bin/pamcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2221"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamdeinterlace is executable">
              <criterion comment="/usr/bin/pamdeinterlace is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2220"/>
              <criterion comment="/usr/bin/pamdeinterlace is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2219"/>
              <criterion comment="/usr/bin/pamdeinterlace is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2218"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamfile is executable">
              <criterion comment="/usr/bin/pamfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2217"/>
              <criterion comment="/usr/bin/pamfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2216"/>
              <criterion comment="/usr/bin/pamfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2215"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamoil is executable">
              <criterion comment="/usr/bin/pamoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2214"/>
              <criterion comment="/usr/bin/pamoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2213"/>
              <criterion comment="/usr/bin/pamoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2212"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamstretch is executable">
              <criterion comment="/usr/bin/pamstretch is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2211"/>
              <criterion comment="/usr/bin/pamstretch is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2210"/>
              <criterion comment="/usr/bin/pamstretch is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2209"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pamtopnm is executable">
              <criterion comment="/usr/bin/pamtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2208"/>
              <criterion comment="/usr/bin/pamtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2207"/>
              <criterion comment="/usr/bin/pamtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2206"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmclean is executable">
              <criterion comment="/usr/bin/pbmclean is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2205"/>
              <criterion comment="/usr/bin/pbmclean is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2204"/>
              <criterion comment="/usr/bin/pbmclean is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2203"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmlife is executable">
              <criterion comment="/usr/bin/pbmlife is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2202"/>
              <criterion comment="/usr/bin/pbmlife is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2201"/>
              <criterion comment="/usr/bin/pbmlife is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2200"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmmake is executable">
              <criterion comment="/usr/bin/pbmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2199"/>
              <criterion comment="/usr/bin/pbmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2198"/>
              <criterion comment="/usr/bin/pbmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2197"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmmask is executable">
              <criterion comment="/usr/bin/pbmmask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2196"/>
              <criterion comment="/usr/bin/pbmmask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2195"/>
              <criterion comment="/usr/bin/pbmmask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2194"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmpage is executable">
              <criterion comment="/usr/bin/pbmpage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2193"/>
              <criterion comment="/usr/bin/pbmpage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2192"/>
              <criterion comment="/usr/bin/pbmpage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2191"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmpscale is executable">
              <criterion comment="/usr/bin/pbmpscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2190"/>
              <criterion comment="/usr/bin/pbmpscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2189"/>
              <criterion comment="/usr/bin/pbmpscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2188"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmreduce is executable">
              <criterion comment="/usr/bin/pbmreduce is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2187"/>
              <criterion comment="/usr/bin/pbmreduce is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2186"/>
              <criterion comment="/usr/bin/pbmreduce is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2185"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtext is executable">
              <criterion comment="/usr/bin/pbmtext is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2184"/>
              <criterion comment="/usr/bin/pbmtext is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2183"/>
              <criterion comment="/usr/bin/pbmtext is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2182"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmto10x is executable">
              <criterion comment="/usr/bin/pbmto10x is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2181"/>
              <criterion comment="/usr/bin/pbmto10x is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2180"/>
              <criterion comment="/usr/bin/pbmto10x is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2179"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmto4425 is executable">
              <criterion comment="/usr/bin/pbmto4425 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2178"/>
              <criterion comment="/usr/bin/pbmto4425 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2177"/>
              <criterion comment="/usr/bin/pbmto4425 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2176"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoascii is executable">
              <criterion comment="/usr/bin/pbmtoascii is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2175"/>
              <criterion comment="/usr/bin/pbmtoascii is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2174"/>
              <criterion comment="/usr/bin/pbmtoascii is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2173"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoatk is executable">
              <criterion comment="/usr/bin/pbmtoatk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2172"/>
              <criterion comment="/usr/bin/pbmtoatk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2171"/>
              <criterion comment="/usr/bin/pbmtoatk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2170"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtobbnbg is executable">
              <criterion comment="/usr/bin/pbmtobbnbg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2169"/>
              <criterion comment="/usr/bin/pbmtobbnbg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2168"/>
              <criterion comment="/usr/bin/pbmtobbnbg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2167"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtocmuwm is executable">
              <criterion comment="/usr/bin/pbmtocmuwm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2166"/>
              <criterion comment="/usr/bin/pbmtocmuwm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2165"/>
              <criterion comment="/usr/bin/pbmtocmuwm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2164"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoepsi is executable">
              <criterion comment="/usr/bin/pbmtoepsi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2163"/>
              <criterion comment="/usr/bin/pbmtoepsi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2162"/>
              <criterion comment="/usr/bin/pbmtoepsi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2161"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoepson is executable">
              <criterion comment="/usr/bin/pbmtoepson is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2160"/>
              <criterion comment="/usr/bin/pbmtoepson is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2159"/>
              <criterion comment="/usr/bin/pbmtoepson is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2158"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtog3 is executable">
              <criterion comment="/usr/bin/pbmtog3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2157"/>
              <criterion comment="/usr/bin/pbmtog3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2156"/>
              <criterion comment="/usr/bin/pbmtog3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2155"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtogem is executable">
              <criterion comment="/usr/bin/pbmtogem is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2154"/>
              <criterion comment="/usr/bin/pbmtogem is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2153"/>
              <criterion comment="/usr/bin/pbmtogem is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2152"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtogo is executable">
              <criterion comment="/usr/bin/pbmtogo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2151"/>
              <criterion comment="/usr/bin/pbmtogo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2150"/>
              <criterion comment="/usr/bin/pbmtogo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2149"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoicon is executable">
              <criterion comment="/usr/bin/pbmtoicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2148"/>
              <criterion comment="/usr/bin/pbmtoicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2147"/>
              <criterion comment="/usr/bin/pbmtoicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2146"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtolj is executable">
              <criterion comment="/usr/bin/pbmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2145"/>
              <criterion comment="/usr/bin/pbmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2144"/>
              <criterion comment="/usr/bin/pbmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2143"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoln03 is executable">
              <criterion comment="/usr/bin/pbmtoln03 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2142"/>
              <criterion comment="/usr/bin/pbmtoln03 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2141"/>
              <criterion comment="/usr/bin/pbmtoln03 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2140"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtolps is executable">
              <criterion comment="/usr/bin/pbmtolps is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2139"/>
              <criterion comment="/usr/bin/pbmtolps is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2138"/>
              <criterion comment="/usr/bin/pbmtolps is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2137"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtomacp is executable">
              <criterion comment="/usr/bin/pbmtomacp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2136"/>
              <criterion comment="/usr/bin/pbmtomacp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2135"/>
              <criterion comment="/usr/bin/pbmtomacp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2134"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtomda is executable">
              <criterion comment="/usr/bin/pbmtomda is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2133"/>
              <criterion comment="/usr/bin/pbmtomda is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2132"/>
              <criterion comment="/usr/bin/pbmtomda is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2131"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtomgr is executable">
              <criterion comment="/usr/bin/pbmtomgr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2130"/>
              <criterion comment="/usr/bin/pbmtomgr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2129"/>
              <criterion comment="/usr/bin/pbmtomgr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2128"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtonokia is executable">
              <criterion comment="/usr/bin/pbmtonokia is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2127"/>
              <criterion comment="/usr/bin/pbmtonokia is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2126"/>
              <criterion comment="/usr/bin/pbmtonokia is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2125"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtopgm is executable">
              <criterion comment="/usr/bin/pbmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2124"/>
              <criterion comment="/usr/bin/pbmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2123"/>
              <criterion comment="/usr/bin/pbmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2122"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtopi3 is executable">
              <criterion comment="/usr/bin/pbmtopi3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2121"/>
              <criterion comment="/usr/bin/pbmtopi3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2120"/>
              <criterion comment="/usr/bin/pbmtopi3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2119"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtopk is executable">
              <criterion comment="/usr/bin/pbmtopk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2118"/>
              <criterion comment="/usr/bin/pbmtopk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2117"/>
              <criterion comment="/usr/bin/pbmtopk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2116"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoplot is executable">
              <criterion comment="/usr/bin/pbmtoplot is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2115"/>
              <criterion comment="/usr/bin/pbmtoplot is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2114"/>
              <criterion comment="/usr/bin/pbmtoplot is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2113"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoppa is executable">
              <criterion comment="/usr/bin/pbmtoppa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2112"/>
              <criterion comment="/usr/bin/pbmtoppa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2111"/>
              <criterion comment="/usr/bin/pbmtoppa is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2110"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtopsg3 is executable">
              <criterion comment="/usr/bin/pbmtopsg3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2109"/>
              <criterion comment="/usr/bin/pbmtopsg3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2108"/>
              <criterion comment="/usr/bin/pbmtopsg3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2107"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoptx is executable">
              <criterion comment="/usr/bin/pbmtoptx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2106"/>
              <criterion comment="/usr/bin/pbmtoptx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2105"/>
              <criterion comment="/usr/bin/pbmtoptx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2104"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtowbmp is executable">
              <criterion comment="/usr/bin/pbmtowbmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2103"/>
              <criterion comment="/usr/bin/pbmtowbmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2102"/>
              <criterion comment="/usr/bin/pbmtowbmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2101"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtox10bm is executable">
              <criterion comment="/usr/bin/pbmtox10bm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2100"/>
              <criterion comment="/usr/bin/pbmtox10bm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2099"/>
              <criterion comment="/usr/bin/pbmtox10bm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2098"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoxbm is executable">
              <criterion comment="/usr/bin/pbmtoxbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2097"/>
              <criterion comment="/usr/bin/pbmtoxbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2096"/>
              <criterion comment="/usr/bin/pbmtoxbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2095"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtoybm is executable">
              <criterion comment="/usr/bin/pbmtoybm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2094"/>
              <criterion comment="/usr/bin/pbmtoybm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2093"/>
              <criterion comment="/usr/bin/pbmtoybm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2092"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmtozinc is executable">
              <criterion comment="/usr/bin/pbmtozinc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2091"/>
              <criterion comment="/usr/bin/pbmtozinc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2090"/>
              <criterion comment="/usr/bin/pbmtozinc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2089"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pbmupc is executable">
              <criterion comment="/usr/bin/pbmupc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2088"/>
              <criterion comment="/usr/bin/pbmupc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2087"/>
              <criterion comment="/usr/bin/pbmupc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2086"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pcxtoppm is executable">
              <criterion comment="/usr/bin/pcxtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2085"/>
              <criterion comment="/usr/bin/pcxtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2084"/>
              <criterion comment="/usr/bin/pcxtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2083"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmbentley is executable">
              <criterion comment="/usr/bin/pgmbentley is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2082"/>
              <criterion comment="/usr/bin/pgmbentley is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2081"/>
              <criterion comment="/usr/bin/pgmbentley is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2080"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmcrater is executable">
              <criterion comment="/usr/bin/pgmcrater is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2079"/>
              <criterion comment="/usr/bin/pgmcrater is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2078"/>
              <criterion comment="/usr/bin/pgmcrater is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2077"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmedge is executable">
              <criterion comment="/usr/bin/pgmedge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2076"/>
              <criterion comment="/usr/bin/pgmedge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2075"/>
              <criterion comment="/usr/bin/pgmedge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2074"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmenhance is executable">
              <criterion comment="/usr/bin/pgmenhance is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2073"/>
              <criterion comment="/usr/bin/pgmenhance is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2072"/>
              <criterion comment="/usr/bin/pgmenhance is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2071"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmhist is executable">
              <criterion comment="/usr/bin/pgmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2070"/>
              <criterion comment="/usr/bin/pgmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2069"/>
              <criterion comment="/usr/bin/pgmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2068"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmkernel is executable">
              <criterion comment="/usr/bin/pgmkernel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2067"/>
              <criterion comment="/usr/bin/pgmkernel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2066"/>
              <criterion comment="/usr/bin/pgmkernel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2065"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmnoise is executable">
              <criterion comment="/usr/bin/pgmnoise is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2064"/>
              <criterion comment="/usr/bin/pgmnoise is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2063"/>
              <criterion comment="/usr/bin/pgmnoise is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2062"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmnorm is executable">
              <criterion comment="/usr/bin/pgmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2061"/>
              <criterion comment="/usr/bin/pgmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2060"/>
              <criterion comment="/usr/bin/pgmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2059"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmoil is executable">
              <criterion comment="/usr/bin/pgmoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2058"/>
              <criterion comment="/usr/bin/pgmoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2057"/>
              <criterion comment="/usr/bin/pgmoil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2056"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmramp is executable">
              <criterion comment="/usr/bin/pgmramp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2055"/>
              <criterion comment="/usr/bin/pgmramp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2054"/>
              <criterion comment="/usr/bin/pgmramp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2053"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmslice is executable">
              <criterion comment="/usr/bin/pgmslice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2052"/>
              <criterion comment="/usr/bin/pgmslice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2051"/>
              <criterion comment="/usr/bin/pgmslice is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2050"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtexture is executable">
              <criterion comment="/usr/bin/pgmtexture is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2049"/>
              <criterion comment="/usr/bin/pgmtexture is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2048"/>
              <criterion comment="/usr/bin/pgmtexture is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2047"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtofs is executable">
              <criterion comment="/usr/bin/pgmtofs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2046"/>
              <criterion comment="/usr/bin/pgmtofs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2045"/>
              <criterion comment="/usr/bin/pgmtofs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2044"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtolispm is executable">
              <criterion comment="/usr/bin/pgmtolispm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2043"/>
              <criterion comment="/usr/bin/pgmtolispm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2042"/>
              <criterion comment="/usr/bin/pgmtolispm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2041"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtopbm is executable">
              <criterion comment="/usr/bin/pgmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2040"/>
              <criterion comment="/usr/bin/pgmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2039"/>
              <criterion comment="/usr/bin/pgmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2038"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pgmtoppm is executable">
              <criterion comment="/usr/bin/pgmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2037"/>
              <criterion comment="/usr/bin/pgmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2036"/>
              <criterion comment="/usr/bin/pgmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2035"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pi1toppm is executable">
              <criterion comment="/usr/bin/pi1toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2034"/>
              <criterion comment="/usr/bin/pi1toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2033"/>
              <criterion comment="/usr/bin/pi1toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2032"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pi3topbm is executable">
              <criterion comment="/usr/bin/pi3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2031"/>
              <criterion comment="/usr/bin/pi3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2030"/>
              <criterion comment="/usr/bin/pi3topbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2029"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pjtoppm is executable">
              <criterion comment="/usr/bin/pjtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2028"/>
              <criterion comment="/usr/bin/pjtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2027"/>
              <criterion comment="/usr/bin/pjtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2026"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pktopbm is executable">
              <criterion comment="/usr/bin/pktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2025"/>
              <criterion comment="/usr/bin/pktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2024"/>
              <criterion comment="/usr/bin/pktopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2023"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pngtopnm is executable">
              <criterion comment="/usr/bin/pngtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2022"/>
              <criterion comment="/usr/bin/pngtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2021"/>
              <criterion comment="/usr/bin/pngtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2020"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmalias is executable">
              <criterion comment="/usr/bin/pnmalias is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2019"/>
              <criterion comment="/usr/bin/pnmalias is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2018"/>
              <criterion comment="/usr/bin/pnmalias is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2017"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmarith is executable">
              <criterion comment="/usr/bin/pnmarith is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2016"/>
              <criterion comment="/usr/bin/pnmarith is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2015"/>
              <criterion comment="/usr/bin/pnmarith is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2014"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcat is executable">
              <criterion comment="/usr/bin/pnmcat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2013"/>
              <criterion comment="/usr/bin/pnmcat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2012"/>
              <criterion comment="/usr/bin/pnmcat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2011"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcolormap is executable">
              <criterion comment="/usr/bin/pnmcolormap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2010"/>
              <criterion comment="/usr/bin/pnmcolormap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2009"/>
              <criterion comment="/usr/bin/pnmcolormap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2008"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcomp is executable">
              <criterion comment="/usr/bin/pnmcomp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2007"/>
              <criterion comment="/usr/bin/pnmcomp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2006"/>
              <criterion comment="/usr/bin/pnmcomp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2005"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmconvol is executable">
              <criterion comment="/usr/bin/pnmconvol is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2004"/>
              <criterion comment="/usr/bin/pnmconvol is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2003"/>
              <criterion comment="/usr/bin/pnmconvol is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2002"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcrop is executable">
              <criterion comment="/usr/bin/pnmcrop is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2001"/>
              <criterion comment="/usr/bin/pnmcrop is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2000"/>
              <criterion comment="/usr/bin/pnmcrop is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1999"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmcut is executable">
              <criterion comment="/usr/bin/pnmcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1998"/>
              <criterion comment="/usr/bin/pnmcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1997"/>
              <criterion comment="/usr/bin/pnmcut is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1996"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmdepth is executable">
              <criterion comment="/usr/bin/pnmdepth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1995"/>
              <criterion comment="/usr/bin/pnmdepth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1994"/>
              <criterion comment="/usr/bin/pnmdepth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1993"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmenlarge is executable">
              <criterion comment="/usr/bin/pnmenlarge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1992"/>
              <criterion comment="/usr/bin/pnmenlarge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1991"/>
              <criterion comment="/usr/bin/pnmenlarge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1990"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmfile is executable">
              <criterion comment="/usr/bin/pnmfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1989"/>
              <criterion comment="/usr/bin/pnmfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1988"/>
              <criterion comment="/usr/bin/pnmfile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1987"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmflip is executable">
              <criterion comment="/usr/bin/pnmflip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1986"/>
              <criterion comment="/usr/bin/pnmflip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1985"/>
              <criterion comment="/usr/bin/pnmflip is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1984"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmgamma is executable">
              <criterion comment="/usr/bin/pnmgamma is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1983"/>
              <criterion comment="/usr/bin/pnmgamma is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1982"/>
              <criterion comment="/usr/bin/pnmgamma is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1981"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmhisteq is executable">
              <criterion comment="/usr/bin/pnmhisteq is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1980"/>
              <criterion comment="/usr/bin/pnmhisteq is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1979"/>
              <criterion comment="/usr/bin/pnmhisteq is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1978"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmhistmap is executable">
              <criterion comment="/usr/bin/pnmhistmap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1977"/>
              <criterion comment="/usr/bin/pnmhistmap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1976"/>
              <criterion comment="/usr/bin/pnmhistmap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1975"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnminterp is executable">
              <criterion comment="/usr/bin/pnminterp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1974"/>
              <criterion comment="/usr/bin/pnminterp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1973"/>
              <criterion comment="/usr/bin/pnminterp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1972"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnminvert is executable">
              <criterion comment="/usr/bin/pnminvert is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1971"/>
              <criterion comment="/usr/bin/pnminvert is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1970"/>
              <criterion comment="/usr/bin/pnminvert is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1969"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmmontage is executable">
              <criterion comment="/usr/bin/pnmmontage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1968"/>
              <criterion comment="/usr/bin/pnmmontage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1967"/>
              <criterion comment="/usr/bin/pnmmontage is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1966"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmnlfilt is executable">
              <criterion comment="/usr/bin/pnmnlfilt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1965"/>
              <criterion comment="/usr/bin/pnmnlfilt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1964"/>
              <criterion comment="/usr/bin/pnmnlfilt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1963"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmnoraw is executable">
              <criterion comment="/usr/bin/pnmnoraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1962"/>
              <criterion comment="/usr/bin/pnmnoraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1961"/>
              <criterion comment="/usr/bin/pnmnoraw is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1960"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmpad is executable">
              <criterion comment="/usr/bin/pnmpad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1959"/>
              <criterion comment="/usr/bin/pnmpad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1958"/>
              <criterion comment="/usr/bin/pnmpad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1957"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmpaste is executable">
              <criterion comment="/usr/bin/pnmpaste is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1956"/>
              <criterion comment="/usr/bin/pnmpaste is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1955"/>
              <criterion comment="/usr/bin/pnmpaste is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1954"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmpsnr is executable">
              <criterion comment="/usr/bin/pnmpsnr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1953"/>
              <criterion comment="/usr/bin/pnmpsnr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1952"/>
              <criterion comment="/usr/bin/pnmpsnr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1951"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmremap is executable">
              <criterion comment="/usr/bin/pnmremap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1950"/>
              <criterion comment="/usr/bin/pnmremap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1949"/>
              <criterion comment="/usr/bin/pnmremap is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1948"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmrotate is executable">
              <criterion comment="/usr/bin/pnmrotate is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1947"/>
              <criterion comment="/usr/bin/pnmrotate is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1946"/>
              <criterion comment="/usr/bin/pnmrotate is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1945"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmscale is executable">
              <criterion comment="/usr/bin/pnmscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1944"/>
              <criterion comment="/usr/bin/pnmscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1943"/>
              <criterion comment="/usr/bin/pnmscale is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1942"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopict is executable">
              <criterion comment="/usr/bin/ppmtopict is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1941"/>
              <criterion comment="/usr/bin/ppmtopict is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1940"/>
              <criterion comment="/usr/bin/ppmtopict is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1939"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopj is executable">
              <criterion comment="/usr/bin/ppmtopj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1938"/>
              <criterion comment="/usr/bin/ppmtopj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1937"/>
              <criterion comment="/usr/bin/ppmtopj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1936"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopjxl is executable">
              <criterion comment="/usr/bin/ppmtopjxl is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1935"/>
              <criterion comment="/usr/bin/ppmtopjxl is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1934"/>
              <criterion comment="/usr/bin/ppmtopjxl is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1933"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopuzz is executable">
              <criterion comment="/usr/bin/ppmtopuzz is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1932"/>
              <criterion comment="/usr/bin/ppmtopuzz is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1931"/>
              <criterion comment="/usr/bin/ppmtopuzz is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1930"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtorgb3 is executable">
              <criterion comment="/usr/bin/ppmtorgb3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1929"/>
              <criterion comment="/usr/bin/ppmtorgb3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1928"/>
              <criterion comment="/usr/bin/ppmtorgb3 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1927"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtosixel is executable">
              <criterion comment="/usr/bin/ppmtosixel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1926"/>
              <criterion comment="/usr/bin/ppmtosixel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1925"/>
              <criterion comment="/usr/bin/ppmtosixel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1924"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtotga is executable">
              <criterion comment="/usr/bin/ppmtotga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1923"/>
              <criterion comment="/usr/bin/ppmtotga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1922"/>
              <criterion comment="/usr/bin/ppmtotga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1921"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtouil is executable">
              <criterion comment="/usr/bin/ppmtouil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1920"/>
              <criterion comment="/usr/bin/ppmtouil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1919"/>
              <criterion comment="/usr/bin/ppmtouil is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1918"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtowinicon is executable">
              <criterion comment="/usr/bin/ppmtowinicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1917"/>
              <criterion comment="/usr/bin/ppmtowinicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1916"/>
              <criterion comment="/usr/bin/ppmtowinicon is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1915"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoxpm is executable">
              <criterion comment="/usr/bin/ppmtoxpm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1914"/>
              <criterion comment="/usr/bin/ppmtoxpm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1913"/>
              <criterion comment="/usr/bin/ppmtoxpm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1912"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoyuv is executable">
              <criterion comment="/usr/bin/ppmtoyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1911"/>
              <criterion comment="/usr/bin/ppmtoyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1910"/>
              <criterion comment="/usr/bin/ppmtoyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1909"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoyuvsplit is executable">
              <criterion comment="/usr/bin/ppmtoyuvsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1908"/>
              <criterion comment="/usr/bin/ppmtoyuvsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1907"/>
              <criterion comment="/usr/bin/ppmtoyuvsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1906"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtv is executable">
              <criterion comment="/usr/bin/ppmtv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1905"/>
              <criterion comment="/usr/bin/ppmtv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1904"/>
              <criterion comment="/usr/bin/ppmtv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1903"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/psidtopgm is executable">
              <criterion comment="/usr/bin/psidtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1902"/>
              <criterion comment="/usr/bin/psidtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1901"/>
              <criterion comment="/usr/bin/psidtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1900"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pstopnm is executable">
              <criterion comment="/usr/bin/pstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1899"/>
              <criterion comment="/usr/bin/pstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1898"/>
              <criterion comment="/usr/bin/pstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1897"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/qrttoppm is executable">
              <criterion comment="/usr/bin/qrttoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1896"/>
              <criterion comment="/usr/bin/qrttoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1895"/>
              <criterion comment="/usr/bin/qrttoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1894"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rasttopnm is executable">
              <criterion comment="/usr/bin/rasttopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1893"/>
              <criterion comment="/usr/bin/rasttopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1892"/>
              <criterion comment="/usr/bin/rasttopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1891"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rawtopgm is executable">
              <criterion comment="/usr/bin/rawtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1890"/>
              <criterion comment="/usr/bin/rawtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1889"/>
              <criterion comment="/usr/bin/rawtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1888"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rawtoppm is executable">
              <criterion comment="/usr/bin/rawtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1887"/>
              <criterion comment="/usr/bin/rawtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1886"/>
              <criterion comment="/usr/bin/rawtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1885"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rgb3toppm is executable">
              <criterion comment="/usr/bin/rgb3toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1884"/>
              <criterion comment="/usr/bin/rgb3toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1883"/>
              <criterion comment="/usr/bin/rgb3toppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1882"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rletopnm is executable">
              <criterion comment="/usr/bin/rletopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1881"/>
              <criterion comment="/usr/bin/rletopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1880"/>
              <criterion comment="/usr/bin/rletopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1879"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sbigtopgm is executable">
              <criterion comment="/usr/bin/sbigtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1878"/>
              <criterion comment="/usr/bin/sbigtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1877"/>
              <criterion comment="/usr/bin/sbigtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1876"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sgitopnm is executable">
              <criterion comment="/usr/bin/sgitopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1875"/>
              <criterion comment="/usr/bin/sgitopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1874"/>
              <criterion comment="/usr/bin/sgitopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1873"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sirtopnm is executable">
              <criterion comment="/usr/bin/sirtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1872"/>
              <criterion comment="/usr/bin/sirtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1871"/>
              <criterion comment="/usr/bin/sirtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1870"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sldtoppm is executable">
              <criterion comment="/usr/bin/sldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1869"/>
              <criterion comment="/usr/bin/sldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1868"/>
              <criterion comment="/usr/bin/sldtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1867"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/spctoppm is executable">
              <criterion comment="/usr/bin/spctoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1866"/>
              <criterion comment="/usr/bin/spctoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1865"/>
              <criterion comment="/usr/bin/spctoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1864"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/spottopgm is executable">
              <criterion comment="/usr/bin/spottopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1863"/>
              <criterion comment="/usr/bin/spottopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1862"/>
              <criterion comment="/usr/bin/spottopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1861"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/sputoppm is executable">
              <criterion comment="/usr/bin/sputoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1860"/>
              <criterion comment="/usr/bin/sputoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1859"/>
              <criterion comment="/usr/bin/sputoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1858"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tgatoppm is executable">
              <criterion comment="/usr/bin/tgatoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1857"/>
              <criterion comment="/usr/bin/tgatoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1856"/>
              <criterion comment="/usr/bin/tgatoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1855"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/thinkjettopbm is executable">
              <criterion comment="/usr/bin/thinkjettopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1854"/>
              <criterion comment="/usr/bin/thinkjettopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1853"/>
              <criterion comment="/usr/bin/thinkjettopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1852"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tifftopnm is executable">
              <criterion comment="/usr/bin/tifftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1851"/>
              <criterion comment="/usr/bin/tifftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1850"/>
              <criterion comment="/usr/bin/tifftopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1849"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/wbmptopbm is executable">
              <criterion comment="/usr/bin/wbmptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1848"/>
              <criterion comment="/usr/bin/wbmptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1847"/>
              <criterion comment="/usr/bin/wbmptopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1846"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/winicontoppm is executable">
              <criterion comment="/usr/bin/winicontoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1845"/>
              <criterion comment="/usr/bin/winicontoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1844"/>
              <criterion comment="/usr/bin/winicontoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1843"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xbmtopbm is executable">
              <criterion comment="/usr/bin/xbmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1842"/>
              <criterion comment="/usr/bin/xbmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1841"/>
              <criterion comment="/usr/bin/xbmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1840"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ximtoppm is executable">
              <criterion comment="/usr/bin/ximtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1839"/>
              <criterion comment="/usr/bin/ximtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1838"/>
              <criterion comment="/usr/bin/ximtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1837"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xpmtoppm is executable">
              <criterion comment="/usr/bin/xpmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1836"/>
              <criterion comment="/usr/bin/xpmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1835"/>
              <criterion comment="/usr/bin/xpmtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1834"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xvminitoppm is executable">
              <criterion comment="/usr/bin/xvminitoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1833"/>
              <criterion comment="/usr/bin/xvminitoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1832"/>
              <criterion comment="/usr/bin/xvminitoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1831"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/xwdtopnm is executable">
              <criterion comment="/usr/bin/xwdtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1830"/>
              <criterion comment="/usr/bin/xwdtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1829"/>
              <criterion comment="/usr/bin/xwdtopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1828"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ybmtopbm is executable">
              <criterion comment="/usr/bin/ybmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1827"/>
              <criterion comment="/usr/bin/ybmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1826"/>
              <criterion comment="/usr/bin/ybmtopbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1825"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/yuvsplittoppm is executable">
              <criterion comment="/usr/bin/yuvsplittoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1824"/>
              <criterion comment="/usr/bin/yuvsplittoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1823"/>
              <criterion comment="/usr/bin/yuvsplittoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1822"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/yuvtoppm is executable">
              <criterion comment="/usr/bin/yuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1821"/>
              <criterion comment="/usr/bin/yuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1820"/>
              <criterion comment="/usr/bin/yuvtoppm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1819"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/zeisstopnm is executable">
              <criterion comment="/usr/bin/zeisstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1818"/>
              <criterion comment="/usr/bin/zeisstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1817"/>
              <criterion comment="/usr/bin/zeisstopnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1816"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmscalefixed is executable">
              <criterion comment="/usr/bin/pnmscalefixed is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1815"/>
              <criterion comment="/usr/bin/pnmscalefixed is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1814"/>
              <criterion comment="/usr/bin/pnmscalefixed is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1813"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmshear is executable">
              <criterion comment="/usr/bin/pnmshear is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1812"/>
              <criterion comment="/usr/bin/pnmshear is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1811"/>
              <criterion comment="/usr/bin/pnmshear is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1810"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmsmooth is executable">
              <criterion comment="/usr/bin/pnmsmooth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1809"/>
              <criterion comment="/usr/bin/pnmsmooth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1808"/>
              <criterion comment="/usr/bin/pnmsmooth is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1807"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmsplit is executable">
              <criterion comment="/usr/bin/pnmsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1806"/>
              <criterion comment="/usr/bin/pnmsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1805"/>
              <criterion comment="/usr/bin/pnmsplit is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1804"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtile is executable">
              <criterion comment="/usr/bin/pnmtile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1803"/>
              <criterion comment="/usr/bin/pnmtile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1802"/>
              <criterion comment="/usr/bin/pnmtile is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1801"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtoddif is executable">
              <criterion comment="/usr/bin/pnmtoddif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1800"/>
              <criterion comment="/usr/bin/pnmtoddif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1799"/>
              <criterion comment="/usr/bin/pnmtoddif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1798"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtofiasco is executable">
              <criterion comment="/usr/bin/pnmtofiasco is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1797"/>
              <criterion comment="/usr/bin/pnmtofiasco is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1796"/>
              <criterion comment="/usr/bin/pnmtofiasco is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1795"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtofits is executable">
              <criterion comment="/usr/bin/pnmtofits is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1794"/>
              <criterion comment="/usr/bin/pnmtofits is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1793"/>
              <criterion comment="/usr/bin/pnmtofits is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1792"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtojpeg is executable">
              <criterion comment="/usr/bin/pnmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1791"/>
              <criterion comment="/usr/bin/pnmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1790"/>
              <criterion comment="/usr/bin/pnmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1789"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtopalm is executable">
              <criterion comment="/usr/bin/pnmtopalm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1788"/>
              <criterion comment="/usr/bin/pnmtopalm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1787"/>
              <criterion comment="/usr/bin/pnmtopalm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1786"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtoplainpnm is executable">
              <criterion comment="/usr/bin/pnmtoplainpnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1785"/>
              <criterion comment="/usr/bin/pnmtoplainpnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1784"/>
              <criterion comment="/usr/bin/pnmtoplainpnm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1783"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtopng is executable">
              <criterion comment="/usr/bin/pnmtopng is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1782"/>
              <criterion comment="/usr/bin/pnmtopng is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1781"/>
              <criterion comment="/usr/bin/pnmtopng is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1780"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtops is executable">
              <criterion comment="/usr/bin/pnmtops is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1779"/>
              <criterion comment="/usr/bin/pnmtops is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1778"/>
              <criterion comment="/usr/bin/pnmtops is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1777"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtorast is executable">
              <criterion comment="/usr/bin/pnmtorast is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1776"/>
              <criterion comment="/usr/bin/pnmtorast is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1775"/>
              <criterion comment="/usr/bin/pnmtorast is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1774"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtorle is executable">
              <criterion comment="/usr/bin/pnmtorle is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1773"/>
              <criterion comment="/usr/bin/pnmtorle is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1772"/>
              <criterion comment="/usr/bin/pnmtorle is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1771"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtosgi is executable">
              <criterion comment="/usr/bin/pnmtosgi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1770"/>
              <criterion comment="/usr/bin/pnmtosgi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1769"/>
              <criterion comment="/usr/bin/pnmtosgi is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1768"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtosir is executable">
              <criterion comment="/usr/bin/pnmtosir is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1767"/>
              <criterion comment="/usr/bin/pnmtosir is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1766"/>
              <criterion comment="/usr/bin/pnmtosir is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1765"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtotiff is executable">
              <criterion comment="/usr/bin/pnmtotiff is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1764"/>
              <criterion comment="/usr/bin/pnmtotiff is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1763"/>
              <criterion comment="/usr/bin/pnmtotiff is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1762"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtotiffcmyk is executable">
              <criterion comment="/usr/bin/pnmtotiffcmyk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1761"/>
              <criterion comment="/usr/bin/pnmtotiffcmyk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1760"/>
              <criterion comment="/usr/bin/pnmtotiffcmyk is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1759"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/pnmtoxwd is executable">
              <criterion comment="/usr/bin/pnmtoxwd is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1758"/>
              <criterion comment="/usr/bin/pnmtoxwd is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1757"/>
              <criterion comment="/usr/bin/pnmtoxwd is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1756"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppm3d is executable">
              <criterion comment="/usr/bin/ppm3d is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1755"/>
              <criterion comment="/usr/bin/ppm3d is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1754"/>
              <criterion comment="/usr/bin/ppm3d is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1753"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmbrighten is executable">
              <criterion comment="/usr/bin/ppmbrighten is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1752"/>
              <criterion comment="/usr/bin/ppmbrighten is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1751"/>
              <criterion comment="/usr/bin/ppmbrighten is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1750"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmchange is executable">
              <criterion comment="/usr/bin/ppmchange is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1749"/>
              <criterion comment="/usr/bin/ppmchange is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1748"/>
              <criterion comment="/usr/bin/ppmchange is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1747"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmcie is executable">
              <criterion comment="/usr/bin/ppmcie is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1746"/>
              <criterion comment="/usr/bin/ppmcie is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1745"/>
              <criterion comment="/usr/bin/ppmcie is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1744"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmcolormask is executable">
              <criterion comment="/usr/bin/ppmcolormask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1743"/>
              <criterion comment="/usr/bin/ppmcolormask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1742"/>
              <criterion comment="/usr/bin/ppmcolormask is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1741"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmcolors is executable">
              <criterion comment="/usr/bin/ppmcolors is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1740"/>
              <criterion comment="/usr/bin/ppmcolors is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1739"/>
              <criterion comment="/usr/bin/ppmcolors is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1738"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmdim is executable">
              <criterion comment="/usr/bin/ppmdim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1737"/>
              <criterion comment="/usr/bin/ppmdim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1736"/>
              <criterion comment="/usr/bin/ppmdim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1735"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmdist is executable">
              <criterion comment="/usr/bin/ppmdist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1734"/>
              <criterion comment="/usr/bin/ppmdist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1733"/>
              <criterion comment="/usr/bin/ppmdist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1732"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmdither is executable">
              <criterion comment="/usr/bin/ppmdither is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1731"/>
              <criterion comment="/usr/bin/ppmdither is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1730"/>
              <criterion comment="/usr/bin/ppmdither is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1729"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmflash is executable">
              <criterion comment="/usr/bin/ppmflash is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1728"/>
              <criterion comment="/usr/bin/ppmflash is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1727"/>
              <criterion comment="/usr/bin/ppmflash is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1726"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmforge is executable">
              <criterion comment="/usr/bin/ppmforge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1725"/>
              <criterion comment="/usr/bin/ppmforge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1724"/>
              <criterion comment="/usr/bin/ppmforge is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1723"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmhist is executable">
              <criterion comment="/usr/bin/ppmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1722"/>
              <criterion comment="/usr/bin/ppmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1721"/>
              <criterion comment="/usr/bin/ppmhist is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1720"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmlabel is executable">
              <criterion comment="/usr/bin/ppmlabel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1719"/>
              <criterion comment="/usr/bin/ppmlabel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1718"/>
              <criterion comment="/usr/bin/ppmlabel is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1717"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmmake is executable">
              <criterion comment="/usr/bin/ppmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1716"/>
              <criterion comment="/usr/bin/ppmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1715"/>
              <criterion comment="/usr/bin/ppmmake is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1714"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmmix is executable">
              <criterion comment="/usr/bin/ppmmix is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1713"/>
              <criterion comment="/usr/bin/ppmmix is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1712"/>
              <criterion comment="/usr/bin/ppmmix is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1711"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmnorm is executable">
              <criterion comment="/usr/bin/ppmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1710"/>
              <criterion comment="/usr/bin/ppmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1709"/>
              <criterion comment="/usr/bin/ppmnorm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1708"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmntsc is executable">
              <criterion comment="/usr/bin/ppmntsc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1707"/>
              <criterion comment="/usr/bin/ppmntsc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1706"/>
              <criterion comment="/usr/bin/ppmntsc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1705"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmpat is executable">
              <criterion comment="/usr/bin/ppmpat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1704"/>
              <criterion comment="/usr/bin/ppmpat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1703"/>
              <criterion comment="/usr/bin/ppmpat is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1702"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmquant is executable">
              <criterion comment="/usr/bin/ppmquant is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1701"/>
              <criterion comment="/usr/bin/ppmquant is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1700"/>
              <criterion comment="/usr/bin/ppmquant is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1699"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmqvga is executable">
              <criterion comment="/usr/bin/ppmqvga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1698"/>
              <criterion comment="/usr/bin/ppmqvga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1697"/>
              <criterion comment="/usr/bin/ppmqvga is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1696"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmrelief is executable">
              <criterion comment="/usr/bin/ppmrelief is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1695"/>
              <criterion comment="/usr/bin/ppmrelief is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1694"/>
              <criterion comment="/usr/bin/ppmrelief is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1693"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmshift is executable">
              <criterion comment="/usr/bin/ppmshift is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1692"/>
              <criterion comment="/usr/bin/ppmshift is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1691"/>
              <criterion comment="/usr/bin/ppmshift is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1690"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmspread is executable">
              <criterion comment="/usr/bin/ppmspread is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1689"/>
              <criterion comment="/usr/bin/ppmspread is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1688"/>
              <criterion comment="/usr/bin/ppmspread is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1687"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoacad is executable">
              <criterion comment="/usr/bin/ppmtoacad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1686"/>
              <criterion comment="/usr/bin/ppmtoacad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1685"/>
              <criterion comment="/usr/bin/ppmtoacad is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1684"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtobmp is executable">
              <criterion comment="/usr/bin/ppmtobmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1683"/>
              <criterion comment="/usr/bin/ppmtobmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1682"/>
              <criterion comment="/usr/bin/ppmtobmp is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1681"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoeyuv is executable">
              <criterion comment="/usr/bin/ppmtoeyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1680"/>
              <criterion comment="/usr/bin/ppmtoeyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1679"/>
              <criterion comment="/usr/bin/ppmtoeyuv is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1678"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtogif is executable">
              <criterion comment="/usr/bin/ppmtogif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1677"/>
              <criterion comment="/usr/bin/ppmtogif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1676"/>
              <criterion comment="/usr/bin/ppmtogif is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1675"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoicr is executable">
              <criterion comment="/usr/bin/ppmtoicr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1674"/>
              <criterion comment="/usr/bin/ppmtoicr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1673"/>
              <criterion comment="/usr/bin/ppmtoicr is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1672"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoilbm is executable">
              <criterion comment="/usr/bin/ppmtoilbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1671"/>
              <criterion comment="/usr/bin/ppmtoilbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1670"/>
              <criterion comment="/usr/bin/ppmtoilbm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1669"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtojpeg is executable">
              <criterion comment="/usr/bin/ppmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1668"/>
              <criterion comment="/usr/bin/ppmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1667"/>
              <criterion comment="/usr/bin/ppmtojpeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1666"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoleaf is executable">
              <criterion comment="/usr/bin/ppmtoleaf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1665"/>
              <criterion comment="/usr/bin/ppmtoleaf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1664"/>
              <criterion comment="/usr/bin/ppmtoleaf is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1663"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtolj is executable">
              <criterion comment="/usr/bin/ppmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1662"/>
              <criterion comment="/usr/bin/ppmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1661"/>
              <criterion comment="/usr/bin/ppmtolj is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1660"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtomitsu is executable">
              <criterion comment="/usr/bin/ppmtomitsu is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1659"/>
              <criterion comment="/usr/bin/ppmtomitsu is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1658"/>
              <criterion comment="/usr/bin/ppmtomitsu is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1657"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtompeg is executable">
              <criterion comment="/usr/bin/ppmtompeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1656"/>
              <criterion comment="/usr/bin/ppmtompeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1655"/>
              <criterion comment="/usr/bin/ppmtompeg is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1654"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtoneo is executable">
              <criterion comment="/usr/bin/ppmtoneo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1653"/>
              <criterion comment="/usr/bin/ppmtoneo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1652"/>
              <criterion comment="/usr/bin/ppmtoneo is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1651"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopcx is executable">
              <criterion comment="/usr/bin/ppmtopcx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1650"/>
              <criterion comment="/usr/bin/ppmtopcx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1649"/>
              <criterion comment="/usr/bin/ppmtopcx is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1648"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopgm is executable">
              <criterion comment="/usr/bin/ppmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1647"/>
              <criterion comment="/usr/bin/ppmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1646"/>
              <criterion comment="/usr/bin/ppmtopgm is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1645"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ppmtopi1 is executable">
              <criterion comment="/usr/bin/ppmtopi1 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1644"/>
              <criterion comment="/usr/bin/ppmtopi1 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1643"/>
              <criterion comment="/usr/bin/ppmtopi1 is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1642"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:811" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Mutt BO in Index Menu</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Mutt</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0078" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0078"/>
        <description>Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mutt version is less than 1.4.1-3.3" negate="false" test_ref="oval:org.mitre.oval:tst:1634"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/mutt is executable">
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2637"/>
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2636"/>
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2635"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:813" version="1" class="vulnerability">
      <metadata>
        <title>Mailman Cross-site Scripting Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Mailman</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0965" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0965"/>
        <description>Cross-site scripting (XSS) vulnerability in the admin CGI script for Mailman before 2.1.4 allows remote attackers to steal session cookies and conduct unauthorized activities.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mailman version is less than 2.1.1-5" negate="false" test_ref="oval:org.mitre.oval:tst:1631"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1630"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:815" version="1" class="vulnerability">
      <metadata>
        <title>Mailman Cross-site Scripting Vulnerability II</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Mailman</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0992" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0992"/>
        <description>Cross-site scripting (XSS) vulnerability in the create CGI script for Mailman before 2.1.3 allows remote attackers to steal cookies of other users.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mailman version is less than 2.1.1-5" negate="false" test_ref="oval:org.mitre.oval:tst:1631"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1630"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:817" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 Firefox and Mozilla Shared Object Code Execution</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2270" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2270"/>
        <description>Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to execute arbitrary code by navigating the prototype chain to reach a privileged object.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-15T04:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-08-19T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false" test_ref="oval:org.mitre.oval:tst:2482"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2650"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:818" version="1" class="vulnerability">
      <metadata>
        <title>Gaim / Ultramagnetic BO Vulnerabilities</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Gaim</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0006" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0006"/>
        <description>Multiple buffer overflows in Gaim 0.75 and earlier, and Ultramagnetic before 0.81, allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) cookies in a Yahoo web connection, (2) a long name parameter in the Yahoo login web page, (3) a long value parameter in the Yahoo login page, (4) a YMSG packet, (5) the URL parser, and (6) HTTP proxy connect.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="gaim version is less than 0.75-0.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:1629"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/gaim is executable">
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1628"/>
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1627"/>
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1626"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:819" version="1" class="vulnerability">
      <metadata>
        <title>Gaim / Ultramagnetic Extract Info Field Function BO</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Gaim</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0007" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0007"/>
        <description>Buffer overflow in the Extract Info Field Function for (1) MSN and (2) YMSG protocol handlers in Gaim 0.74 and earlier, and Ultramagnetic before 0.81, allows remote attackers to cause a denial of service and possibly execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="gaim version is less than 0.75-0.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:1629"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/gaim is executable">
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1628"/>
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1627"/>
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1626"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:820" version="1" class="vulnerability">
      <metadata>
        <title>Gaim / Ultramagnetic directIM Packet Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Gaim</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0008" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0008"/>
        <description>Integer overflow in Gaim 0.74 and earlier, and Ultramagnetic before 0.81, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="gaim version is less than 0.75-0.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:1629"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/gaim is executable">
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1628"/>
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1627"/>
            <criterion comment="/usr/bin/gaim is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1626"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:821" version="1" class="vulnerability">
      <metadata>
        <title>slocate Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>slocate</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0848" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0848"/>
        <description>Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileges via a modified slocate database that causes a negative "pathlen" value to be used.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="slocate version is less than 2.7-2" negate="false" test_ref="oval:org.mitre.oval:tst:1625"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/usr/bin/slocate is setgid">
            <criterion comment="/usr/bin/slocate is setgid" negate="false" test_ref="oval:org.mitre.oval:tst:1624"/>
            <criterion comment="/usr/bin/slocate is setgid" negate="false" test_ref="oval:org.mitre.oval:tst:1623"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:822" version="1" class="vulnerability">
      <metadata>
        <title>Midnight Commander vfs_s_resolve_symlink BO</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Midnight Commander</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-1023" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1023"/>
        <description>Stack-based buffer overflow in vfs_s_resolve_symlink of vfs/direntry.c for Midnight Commander (mc) 4.6.0 and earlier, and possibly later versions, allows remote attackers to execute arbitrary code during symlink conversion.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-21T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mc version is less than 4.6.0-7.9" negate="false" test_ref="oval:org.mitre.oval:tst:1622"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/mc is executable">
            <criterion comment="/usr/bin/mc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1621"/>
            <criterion comment="/usr/bin/mc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1620"/>
            <criterion comment="/usr/bin/mc is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1619"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:823" version="1" class="vulnerability">
      <metadata>
        <title>Konqueror Cookie Access Restrictions Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>KDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0592" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0592"/>
        <description>Konqueror in KDE 3.1.3 and earlier (kdelibs) allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot) directory traversal sequences in a URL, which causes Konqueror to send the cookie outside the specified URL subsets, e.g. to a vulnerable application that runs on the same server as the target application.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kdelibs version is less than 3.1-13" negate="false" test_ref="oval:org.mitre.oval:tst:1618"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/konqueror is executable">
            <criterion comment="/usr/bin/konqueror is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2655"/>
            <criterion comment="/usr/bin/konqueror is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2654"/>
            <criterion comment="/usr/bin/konqueror is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2653"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:825" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Linux Kernel do_mremap Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>mremap</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0077" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0077"/>
        <description>The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="kernel version is less than 2.4.21-9.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1617"/>
          <criterion comment="kernel-smp version is less than 2.4.21-9.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1616"/>
          <criterion comment="kernel-hugemem version is less than 2.4.21-9.0.1.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1615"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:826" version="1" class="vulnerability">
      <metadata>
        <title>RedHat Enterprise 3 Code Execution and DoS Vulnerabilities in PWLib</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>PWLib</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0097" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0097"/>
        <description>Multiple vulnerabilities in PWLib before 1.6.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Added a program_name element to rlt-217">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="pwlib version is less than 1.4.7-7.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1614"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="a program is listening on TCP or UDP port 1720" negate="false" test_ref="oval:org.mitre.oval:tst:2320"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:827" version="1" class="vulnerability">
      <metadata>
        <title>Samba mksmboasswd Disabled Account Creation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Samba 3.0.0 and 3.0.1</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0082" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0082"/>
        <description>The mksmbpasswd shell script (mksmbpasswd.sh) in Samba 3.0.0 and 3.0.1, when creating an account but marking it as disabled, may overwrite the user password with an uninitialized buffer, which could enable the account with a more easily guessable password.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="samba version is less than 3.0.2-6.3E" negate="false" test_ref="oval:org.mitre.oval:tst:1613"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="smbd is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2558"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:828" version="1" class="vulnerability">
      <metadata>
        <title>mod_python Web Server Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>mod_python</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0973" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0973"/>
        <description>Unknown vulnerability in mod_python 3.0.x before 3.0.4, and 2.7.x before 2.7.9, allows remote attackers to cause a denial of service (httpd crash) via a certain query string.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mod_python version is less than 3.0.1-4" negate="false" test_ref="oval:org.mitre.oval:tst:1612"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:1611"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:830" version="1" class="vulnerability">
      <metadata>
        <title>XFree86 Buffer Overflow in dirfile</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>XFree86</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0083" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0083"/>
        <description>Buffer overflow in ReadFontAlias from dirfile.c of XFree86 4.1.0 through 4.3.0 allows local users and remote attackers to execute arbitrary code via a font alias file (font.alias) with a long token, a different vulnerability than CVE-2004-0084 and CVE-2004-0106.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-02-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="XFree86 version is less than 4.3.0-55.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1610"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
            <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1640"/>
            <criteria operator="OR" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1639"/>
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1638"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:831" version="1" class="vulnerability">
      <metadata>
        <title>XFree86 Buffer Overflow in CopyISOLatin1Lowered Function</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>XFree86</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0084" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0084"/>
        <description>Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a different vulnerability than CVE-2004-0083 and CVE-2004-0106.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="XFree86 version is less than 4.3.0-55.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1610"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
            <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1640"/>
            <criteria operator="OR" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1639"/>
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1638"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:832" version="1" class="vulnerability">
      <metadata>
        <title>XFree86 Improper Handling of Font Files</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>XFree86</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0106" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0106"/>
        <description>Multiple unknown vulnerabilities in XFree86 4.1.0 to 4.3.0, related to improper handling of font files, a different set of vulnerabilities than CVE-2004-0083 and CVE-2004-0084.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="XFree86 version is less than 4.3.0-55.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1610"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
            <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1640"/>
            <criteria operator="OR" comment="/usr/X11R6/bin/XFree86 is SUID and executable">
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1639"/>
              <criterion comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:1638"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:833" version="1" class="vulnerability">
      <metadata>
        <title>XMLSoft Libxml2 Code Execution Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>XMLSoft Libxml2</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0110" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0110"/>
        <description>Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remote attackers to execute arbitrary code via a long URL.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="libxml2 version is less than 2.5.10-6" negate="false" test_ref="oval:org.mitre.oval:tst:1609"/>
          <criterion comment="libxml2-devel version is less than 2.5.10-6" negate="false" test_ref="oval:org.mitre.oval:tst:1608"/>
          <criterion comment="libxml2-python version is less than 2.5.10-6" negate="false" test_ref="oval:org.mitre.oval:tst:1607"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:834" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Kernel R128 DRI Limits Checking Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0003" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0003"/>
        <description>Unknown vulnerability in Linux kernel before 2.4.22 allows local users to gain privileges, related to "R128 DRI limits checking."</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Configuration">
          <criterion comment="kernel version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1606"/>
          <criterion comment="kernel-smp version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1605"/>
          <criterion comment="kernel-bigmem version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1604"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:835" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Kernel ncp_lookup Function BO</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0010" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0010"/>
        <description>Stack-based buffer overflow in the ncp_lookup function for ncpfs in Linux kernel 2.4.x allows local users to gain privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Configuration">
          <criterion comment="kernel version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1606"/>
          <criterion comment="kernel-smp version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1605"/>
          <criterion comment="kernel-bigmem version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1604"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:836" version="1" class="vulnerability">
      <metadata>
        <title>Vicam USB Driver Data Copy Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Vicam USB driver</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0075" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0075"/>
        <description>The Vicam USB driver in Linux before 2.4.25 does not use the copy_from_user function when copying data from userspace to kernel space, which crosses security boundaries and allows local users to cause a denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Configuration">
          <criterion comment="kernel version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1606"/>
          <criterion comment="kernel-smp version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1605"/>
          <criterion comment="kernel-bigmem version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1604"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:837" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Linux Kernel do_mremap Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>mremap</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0077" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0077"/>
        <description>The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Configuration">
          <criterion comment="kernel version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1606"/>
          <criterion comment="kernel-smp version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1605"/>
          <criterion comment="kernel-bigmem version is less than 2.4.20-30.9" negate="false" test_ref="oval:org.mitre.oval:tst:1604"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:838" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Mutt BO in Index Menu</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Mutt</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0078" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0078"/>
        <description>Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-09T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mutt version is less than 1.4.1-3.4" negate="false" test_ref="oval:org.mitre.oval:tst:1603"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/mutt is executable">
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2637"/>
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2636"/>
            <criterion comment="/usr/bin/mutt is executable" negate="false" test_ref="oval:org.mitre.oval:tst:2635"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:839" version="1" class="vulnerability">
      <metadata>
        <title>mod_python Web Server Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>mod_python</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0973" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0973"/>
        <description>Unknown vulnerability in mod_python 3.0.x before 3.0.4, and 2.7.x before 2.7.9, allows remote attackers to cause a denial of service (httpd crash) via a certain query string.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mod_python version is less than 3.0.1-4" negate="false" test_ref="oval:org.mitre.oval:tst:1612"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:1611"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:84" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal 0.9.12 Vulnerability in OSI Dissector</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0429" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0429"/>
        <description>The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via invalid IPv4 or IPv6 prefix lengths, possibly triggering a buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="ethereal version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2985"/>
          <criterion comment="ethereal-gnome version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2984"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:845" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 gdk-pixbuf Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>gdk-pixbuf</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0111" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0111"/>
        <description>gdk-pixbuf before 0.20 allows attackers to cause a denial of service (crash) via a malformed bitmap (BMP) file.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable configuration">
          <criterion comment="gdk-pixbuf version is less than 0.22.0-6.0.3" negate="false" test_ref="oval:org.mitre.oval:tst:1589"/>
          <criterion comment="gdk-pixbuf-devel version is less than 0.22.0-6.0.3" negate="false" test_ref="oval:org.mitre.oval:tst:1588"/>
          <criterion comment="gdk-pixbuf-gnome version is less than 0.22.0-6.0.3" negate="false" test_ref="oval:org.mitre.oval:tst:1587"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:846" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat gdk-pixbuf Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>gdk-pixbuf</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0111" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0111"/>
        <description>gdk-pixbuf before 0.20 allows attackers to cause a denial of service (crash) via a malformed bitmap (BMP) file.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable configuration">
          <criterion comment="gdk-pixbuf version is less than 0.22.0-6.1.0" negate="false" test_ref="oval:org.mitre.oval:tst:1586"/>
          <criterion comment="gdk-pixbuf-devel version is less than 0.22.0-6.1.0" negate="false" test_ref="oval:org.mitre.oval:tst:1585"/>
          <criterion comment="gdk-pixbuf-gnome version is less than 0.22.0-6.1.0" negate="false" test_ref="oval:org.mitre.oval:tst:1584"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:847" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat tcpdump Denial of Service via ISAKMP Packets</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>tcpdump</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0989" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0989"/>
        <description>tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="tcpdump version is less than 3.7.2-7.9.1" negate="false" test_ref="oval:org.mitre.oval:tst:1583"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/sbin/tcpdump is executable">
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1582"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1581"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1580"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:849" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat sysstat port and trigger Scripts symlink Attack Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>sysstat</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0107" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0107"/>
        <description>The (1) post and (2) trigger scripts in sysstat 4.0.7 and earlier allow local users to overwrite arbitrary files via symlink attacks on temporary files, a different vulnerability than CVE-2004-0108.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="sysstat version is less than 4.0.7-4.rhl9.1" negate="false" test_ref="oval:org.mitre.oval:tst:1579"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:850" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat tcpdump Denial of Service via print_attr_string Function</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>tcpdump</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0055" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0055"/>
        <description>The print_attr_string function in print-radius.c for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a RADIUS attribute with a large length value.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="tcpdump version is less than 3.7.2-7.9.1" negate="false" test_ref="oval:org.mitre.oval:tst:1583"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/sbin/tcpdump is executable">
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1582"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1581"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1580"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:851" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat tcpdump Denial of Service via ISAKMP Packets II</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>tcpdump</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0057" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0057"/>
        <description>The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values to be used in a loop, a different vulnerability than CVE-2003-0989.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="tcpdump version is less than 3.7.2-7.9.1" negate="false" test_ref="oval:org.mitre.oval:tst:1583"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/sbin/tcpdump is executable">
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1582"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1581"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1580"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:852" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 tcpdump DoS via ISAKMP Packets</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>tcpdump</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0989" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0989"/>
        <description>tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="tcpdump version is less than 3.7.2-7.E3.1" negate="false" test_ref="oval:org.mitre.oval:tst:1578"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/sbin/tcpdump is executable">
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1582"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1581"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1580"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:853" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 tcpdump Denial of Service via print_attr_string Function</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>tcpdump</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0055" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0055"/>
        <description>The print_attr_string function in print-radius.c for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a RADIUS attribute with a large length value.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="tcpdump version is less than 3.7.2-7.E3.1" negate="false" test_ref="oval:org.mitre.oval:tst:1578"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/sbin/tcpdump is executable">
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1582"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1581"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1580"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:854" version="1" class="vulnerability">
      <metadata>
        <title>RHE3 tcpdump DoS via ISAKMP Packets II</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>tcpdump</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0057" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0057"/>
        <description>The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values to be used in a loop, a different vulnerability than CVE-2003-0989.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-09T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="tcpdump version is less than 3.7.2-7.E3.1" negate="false" test_ref="oval:org.mitre.oval:tst:1578"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/sbin/tcpdump is executable">
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1582"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1581"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1580"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:855" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat CVS Server root Directory Access Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>CVS server</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0977" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0977"/>
        <description>CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="cvs version is less than 1.11.2-13" negate="false" test_ref="oval:org.mitre.oval:tst:1577"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/ is world-writable" negate="false" test_ref="oval:org.mitre.oval:tst:1576"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:856" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal Malformed SMB Packet Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-1012" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1012"/>
        <description>The SMB dissector in Ethereal before 0.10.0 allows remote attackers to cause a denial of service via a malformed SMB packet that triggers a segmentation fault during processing of Selected packets.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.0a-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1575"/>
            <criterion comment="ethereal-gnome version is less than 0.10.0a-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1574"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1573"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1572"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1571"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1570"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1569"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1568"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/tethereal is executable">
              <criterion comment="/usr/sbin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1567"/>
              <criterion comment="/usr/sbin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1566"/>
              <criterion comment="/usr/sbin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1565"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:857" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal Malformed Q.931 Packet Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Tethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-1013" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1013"/>
        <description>The Q.931 dissector in Ethereal before 0.10.0, and Tethereal, allows remote attackers to cause a denial of service (crash) via a malformed Q.931, which triggers a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.0a-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1575"/>
            <criterion comment="ethereal-gnome version is less than 0.10.0a-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1574"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1573"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1572"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1571"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1570"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1569"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1568"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/tethereal is executable">
              <criterion comment="/usr/sbin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1567"/>
              <criterion comment="/usr/sbin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1566"/>
              <criterion comment="/usr/sbin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1565"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:858" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat kdepim VCF File Information Reader BO</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>KDE Personal Information Management (kdepim)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0988" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0988"/>
        <description>Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kdepim version is less than 3.1-6" negate="false" test_ref="oval:org.mitre.oval:tst:1564"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/share/services/kfile_vcf.desktop is readable">
            <criterion comment="/usr/share/services/kfile_vcf.desktop is readable" negate="false" test_ref="oval:org.mitre.oval:tst:1563"/>
            <criterion comment="/usr/share/services/kfile_vcf.desktop is readable" negate="false" test_ref="oval:org.mitre.oval:tst:1562"/>
            <criterion comment="/usr/share/services/kfile_vcf.desktop is readable" negate="false" test_ref="oval:org.mitre.oval:tst:1561"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:859" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Kernel Real Time Clock Data Leakage</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0984" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0984"/>
        <description>Real time clock (RTC) routines in Linux kernel 2.4.23 and earlier do not properly initialize their structures, which could leak kernel data to user space.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Configuration">
          <criterion comment="kernel version is less than 2.4.20-28.9" negate="false" test_ref="oval:org.mitre.oval:tst:1560"/>
          <criterion comment="kernel-smp version is less than 2.4.20-28.9" negate="false" test_ref="oval:org.mitre.oval:tst:1559"/>
          <criterion comment="kernel-bigmem version is less than 2.4.20-28.9" negate="false" test_ref="oval:org.mitre.oval:tst:1558"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:861" version="1" class="vulnerability">
      <metadata>
        <title>rpc.mountd Denial of Service via NFS Mount</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>nfs-utils packages</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0154" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0154"/>
        <description>rpc.mountd in nfs-utils after 1.0.3 and before 1.0.6 allows attackers to cause a denial of service (crash) via an NFS mount of a directory from a client whose reverse DNS lookup name is different from the forward lookup name.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="nfs-utils version is less than 1.0.6-7.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1557"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="rpc.mountd is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:1556"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:862" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 sysstat port and trigger Scripts symlink Attack Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Sysstat</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0107" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0107"/>
        <description>The (1) post and (2) trigger scripts in sysstat 4.0.7 and earlier allow local users to overwrite arbitrary files via symlink attacks on temporary files, a different vulnerability than CVE-2004-0108.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="sysstat version is less than 4.0.7-4.EL3.2" negate="false" test_ref="oval:org.mitre.oval:tst:1555"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:863" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Multiple stack-based BO Vulnerabilities in Apache</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>httpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0542" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0542"/>
        <description>Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-17T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="httpd version is less than 2.0.40-21.9" negate="false" test_ref="oval:org.mitre.oval:tst:1554"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd.worker is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2851"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:864" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Multiple stack-based BO Vulnerabilities in Apache</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0542" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0542"/>
        <description>Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="httpd version is less than 2.0.46-26.ent" negate="false" test_ref="oval:org.mitre.oval:tst:1553"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd.worker is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:2851"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:865" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 kdepim VCF File Information Reader BO</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>KDE Personal Information Management (kdepim)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0988" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0988"/>
        <description>Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kdepim version is less than 3.1.3-3.3" negate="false" test_ref="oval:org.mitre.oval:tst:1552"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/share/services/kfile_vcf.desktop is readable">
            <criterion comment="/usr/share/services/kfile_vcf.desktop is readable" negate="false" test_ref="oval:org.mitre.oval:tst:1563"/>
            <criterion comment="/usr/share/services/kfile_vcf.desktop is readable" negate="false" test_ref="oval:org.mitre.oval:tst:1562"/>
            <criterion comment="/usr/share/services/kfile_vcf.desktop is readable" negate="false" test_ref="oval:org.mitre.oval:tst:1561"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:866" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 CVS Server root Directory Access Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>CVS server</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0977" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0977"/>
        <description>CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="cvs version is less than 1.11.2-14" negate="false" test_ref="oval:org.mitre.oval:tst:1551"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/ is world-writable" negate="false" test_ref="oval:org.mitre.oval:tst:1576"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:872" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat S/MIME Protocol Denial of Service Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0564" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0564"/>
        <description>Multiple vulnerabilities in multiple vendor implementations of the Secure/Multipurpose Internet Mail Extensions (S/MIME) protocol allow remote attackers to cause a denial of service and possibly execute arbitrary code via an S/MIME email message containing certain unexpected ASN.1 constructs, as demonstrated using the NISSC test suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="mozilla-nss version is less than 1.4.2-0.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:1539"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:873" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Mozilla Bypass Cookie Access Restrictions Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0594" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0594"/>
        <description>Mozilla allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot) directory traversal sequences in a URL, which causes Mozilla to send the cookie outside the specified URL subsets, e.g. to a vulnerable application that runs on the same server as the target application.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mozilla version is less than 1.4.2-0.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:1538"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/mozilla is executable">
            <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1537"/>
            <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1536"/>
            <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1535"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:874" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Mozilla Zombie Document Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0191" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0191"/>
        <description>Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded, allowing it to interact with the previous page (zombie document) and enable cross-domain and cross-site scripting (XSS) attacks, as demonstrated using onmousemove events.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-18T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mozilla version is less than 1.4.2-0.9.0" negate="false" test_ref="oval:org.mitre.oval:tst:1538"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/mozilla is executable">
            <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1537"/>
            <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1536"/>
            <criterion comment="/usr/bin/mozilla is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1535"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:875" version="1" class="vulnerability">
      <metadata>
        <title>XMLSoft Libxml2 Code Execution Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>libxml2</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0110" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0110"/>
        <description>Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remote attackers to execute arbitrary code via a long URL.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-02-22T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="libxml2 version is less than 2.5.10-6" negate="false" test_ref="oval:org.mitre.oval:tst:1609"/>
          <criterion comment="libxml2-devel version is less than 2.5.10-6" negate="false" test_ref="oval:org.mitre.oval:tst:1608"/>
          <criterion comment="libxml2-python version is less than 2.5.10-6" negate="false" test_ref="oval:org.mitre.oval:tst:1607"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:876" version="1" class="vulnerability">
      <metadata>
        <title>Apache 2 Denial of Service due to Memory Leak in mod_ssl</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>httpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0113" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0113"/>
        <description>Memory leak in ssl_engine_io.c for mod_ssl in Apache 2 before 2.0.49 allows remote attackers to cause a denial of service (memory consumption) via plain HTTP requests to the SSL port of an SSL-enabled server.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-26T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="mod_ssl version is less than 2.0.46-32.ent" negate="false" test_ref="oval:org.mitre.oval:tst:1534"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="httpd is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:1611"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:877" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Squid ACL Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Red Hat 9</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0189" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0189"/>
        <description>The "%xx" URL decoding function in Squid 2.5STABLE4 and earlier allows remote attackers to bypass url_regex ACLs via a URL with a NULL ("%00") characterm, which causes Squid to use only a portion of the requested URL when comparing it against the access control lists.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-07T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="squid version is less than 2.5STABLE1-3.9" negate="false" test_ref="oval:org.mitre.oval:tst:1533"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="squid is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1532"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:878" version="1" class="vulnerability">
      <metadata>
        <title>Multiple BO Vulnerabilities in Red Hat Ethereal</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Red Hat 9</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0176" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0176"/>
        <description>Multiple buffer overflows in Ethereal 0.8.13 to 0.10.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) NetFlow, (2) IGAP, (3) EIGRP, (4) PGM, (5) IrDA, (6) BGP, (7) ISUP, or (8) TCAP dissectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-07T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1531"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1530"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:879" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Ethereal Denial of Service via Malformed RADIUS Packet</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Red Hat 9</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0365" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0365"/>
        <description>The dissect_attribute_value_pairs function in packet-radius.c for Ethereal 0.8.13 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a malformed RADIUS packet that triggers a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-07T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1531"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1530"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:88" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal SPNEGO Dissoector Denial of Service Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Ethereal</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0430" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0430"/>
        <description>The SPNEGO dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (crash) via an invalid ASN.1 value.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-08-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-03-25T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="Vulnerable Config">
          <criterion comment="ethereal version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2985"/>
          <criterion comment="ethereal-gnome version is less than 0.9.13-1.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:2984"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:880" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Ethereal Denial of Service via 0-Length Presentation Protocol Selector</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>Red Hat 9</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0367" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0367"/>
        <description>Ethereal 0.10.1 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a zero-length Presentation protocol selector.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-07T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1531"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.90.1" negate="false" test_ref="oval:org.mitre.oval:tst:1530"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:887" version="1" class="vulnerability">
      <metadata>
        <title>Multiple BO Vulnerabilities in Red Hat Enterprise 3 Ethereal</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0176" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0176"/>
        <description>Multiple buffer overflows in Ethereal 0.8.13 to 0.10.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) NetFlow, (2) IGAP, (3) EIGRP, (4) PGM, (5) IrDA, (6) BGP, (7) ISUP, or (8) TCAP dissectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-08T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.30E.1" negate="false" test_ref="oval:org.mitre.oval:tst:1505"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.30E.1" negate="false" test_ref="oval:org.mitre.oval:tst:1504"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:891" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Ethereal Denial of Service via Malformed RADIUS Packet</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0365" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0365"/>
        <description>The dissect_attribute_value_pairs function in packet-radius.c for Ethereal 0.8.13 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a malformed RADIUS packet that triggers a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-08T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.30E.1" negate="false" test_ref="oval:org.mitre.oval:tst:1505"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.30E.1" negate="false" test_ref="oval:org.mitre.oval:tst:1504"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:905" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Ethereal Denial of Service via 0-Length Presentation Protocol Selector</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0367" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0367"/>
        <description>Ethereal 0.10.1 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a zero-length Presentation protocol selector.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-08T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.30E.1" negate="false" test_ref="oval:org.mitre.oval:tst:1505"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.30E.1" negate="false" test_ref="oval:org.mitre.oval:tst:1504"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:914" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 S/MIME Protocol Denial of Service Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0564" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0564"/>
        <description>Multiple vulnerabilities in multiple vendor implementations of the Secure/Multipurpose Internet Mail Extensions (S/MIME) protocol allow remote attackers to cause a denial of service and possibly execute arbitrary code via an S/MIME email message containing certain unexpected ASN.1 constructs, as demonstrated using the NISSC test suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-08T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="mozilla-nss version is less than 1.4.2-3.0.2" negate="false" test_ref="oval:org.mitre.oval:tst:1468"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:917" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Mozilla Bypass Cookie Access Restrictions Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0594" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0594"/>
        <description>Mozilla allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot) directory traversal sequences in a URL, which causes Mozilla to send the cookie outside the specified URL subsets, e.g. to a vulnerable application that runs on the same server as the target application.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-08T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="mozilla-nss version is less than 1.4.2-3.0.2" negate="false" test_ref="oval:org.mitre.oval:tst:1468"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:937" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Mozilla Zombie Document Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0191" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0191"/>
        <description>Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded, allowing it to interact with the previous page (zombie document) and enable cross-domain and cross-site scripting (XSS) attacks, as demonstrated using onmousemove events.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-04-08T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-05T12:00:00.000-04:00">INTERIM</status_change>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="mozilla-nss version is less than 1.4.2-3.0.2" negate="false" test_ref="oval:org.mitre.oval:tst:1468"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:939" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel ip_setsockopt Integer Overflow</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0424" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0424"/>
        <description>Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="kernel versions">
          <criterion comment="kernel version is less than 2.4.21-9.0.3.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1436"/>
          <criterion comment="kernel-smp version is less than 2.4.21-9.0.3.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1435"/>
          <criterion comment="kernel-hugemem version is less than 2.4.21-9.0.3.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1434"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:941" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 Squid ACL Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0189" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0189"/>
        <description>The "%xx" URL decoding function in Squid 2.5STABLE4 and earlier allows remote attackers to bypass url_regex ACLs via a URL with a NULL ("%00") characterm, which causes Squid to use only a portion of the requested URL when comparing it against the access control lists.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="squid version is less than 2.5.STABLE3-5.3E" negate="false" test_ref="oval:org.mitre.oval:tst:1431"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="squid is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1532"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:945" version="1" class="vulnerability">
      <metadata>
        <title>Racoon IKE Daemon Unauthorized X.509 Certificate Connection Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0155" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0155"/>
        <description>The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not verify the RSA signature authentication, which allows remote attackers to establish unauthorized IP connections or conduct man-in-the-middle attacks using a valid, trusted X.509 certificate.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="ipsec-tools version is less than 0.2.5-0.4" negate="false" test_ref="oval:org.mitre.oval:tst:1430"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="racoon is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1429"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:947" version="1" class="vulnerability">
      <metadata>
        <title>KAME IKE Daemon Improper Hash Value Handling</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0164" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0164"/>
        <description>KAME IKE daemon (racoon) does not properly handle hash values, which allows remote attackers to delete certificates via (1) a certain delete message that is not properly handled in isakmp.c or isakmp_inf.c, or (2) a certain INITIAL-CONTACT message that is not properly handled in isakmp_inf.c.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="ipsec-tools version is less than 0.2.5-0.4" negate="false" test_ref="oval:org.mitre.oval:tst:1430"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="racoon is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1429"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:954" version="1" class="vulnerability">
      <metadata>
        <title>Konqueror URI Handler "-" Filter Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0411" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0411"/>
        <description>The URI handlers in Konqueror for KDE 3.2.2 and earlier do not properly filter "-" characters that begin a hostname in a (1) telnet, (2) rlogin, (3) ssh, or (4) mailto URI, which allows remote attackers to manipulate the options that are passed to the associated programs, possibly to read arbitrary files or execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-19T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kdelibs version is less than 3.1.3-6.4" negate="false" test_ref="oval:org.mitre.oval:tst:1426"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="telnet, rlogin, ssh or kmail is executable">
            <criteria operator="OR" comment="/usr/bin/telnet is executable">
              <criterion comment="/usr/bin/telnet is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1425"/>
              <criterion comment="/usr/bin/telnet is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1424"/>
              <criterion comment="/usr/bin/telnet is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1423"/>
            </criteria>
            <criteria operator="OR" comment="/usr/kerberos/bin/telnet is executable">
              <criterion comment="/usr/kerberos/bin/telnet is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1422"/>
              <criterion comment="/usr/kerberos/bin/telnet is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1421"/>
              <criterion comment="/usr/kerberos/bin/telnet is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1420"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/rlogin is executable">
              <criterion comment="/usr/bin/rlogin is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1419"/>
              <criterion comment="/usr/bin/rlogin is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1418"/>
              <criterion comment="/usr/bin/rlogin is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1417"/>
            </criteria>
            <criteria operator="OR" comment="/usr/kerberos/bin/rlogin is executable">
              <criterion comment="/usr/kerberos/bin/rlogin is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1416"/>
              <criterion comment="/usr/kerberos/bin/rlogin is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1415"/>
              <criterion comment="/usr/kerberos/bin/rlogin is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1414"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/ssh is executable">
              <criterion comment="/usr/bin/ssh is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1413"/>
              <criterion comment="/usr/bin/ssh is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1412"/>
              <criterion comment="/usr/bin/ssh is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1411"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/kmail is executable">
              <criterion comment="/usr/bin/kmail is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1410"/>
              <criterion comment="/usr/bin/kmail is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1409"/>
              <criterion comment="/usr/bin/kmail is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1408"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:960" version="1" class="vulnerability">
      <metadata>
        <title>Magick XWD Decoder DoS</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>ImageMagick</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1739" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1739"/>
        <description>The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a denial of service (infinite loop) via an image with a zero color mask.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-07-11T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2005-07-27T10:36:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-08-18T07:37:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ImageMagick RPM earlier than 0:5.5.6-15" negate="false" test_ref="oval:org.mitre.oval:tst:1397"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:967" version="1" class="vulnerability">
      <metadata>
        <title>rsync Path Sanitation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0426" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0426"/>
        <description>rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module's path.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-19T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="rsync version is less than 2.5.7-4.3E" negate="false" test_ref="oval:org.mitre.oval:tst:1389"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:970" version="1" class="vulnerability">
      <metadata>
        <title>CVS pserver BO</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0396" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0396"/>
        <description>Heap-based buffer overflow in CVS 1.11.x up to 1.11.15, and 1.12.x up to 1.12.7, when using the pserver mechanism allows remote attackers to execute arbitrary code via Entry lines.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="cvs version is less than 1.11.2-22" negate="false" test_ref="oval:org.mitre.oval:tst:1382"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/cvs is executable">
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1381"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1380"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1379"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:971" version="1" class="vulnerability">
      <metadata>
        <title>libpng Malformed PNG Image Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0421" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0421"/>
        <description>The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-20T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criteria operator="OR" comment="libpng/libpng-devel is less than 1.2.2-21 or libpng10/libpng-devel less than 1.0.13 is installed">
          <criterion comment="libpng version is less than 1.2.2-21" negate="false" test_ref="oval:org.mitre.oval:tst:1378"/>
          <criterion comment="libpng-devel version is less than 1.2.2-21" negate="false" test_ref="oval:org.mitre.oval:tst:1377"/>
          <criterion comment="libpng10 version is less than 1.0.13-12" negate="false" test_ref="oval:org.mitre.oval:tst:1376"/>
          <criterion comment="libpng10-devel version is less than 1.0.13-12" negate="false" test_ref="oval:org.mitre.oval:tst:1375"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:972" version="1" class="vulnerability">
      <metadata>
        <title>tcpdump Delete Payload in ISAKMP Packets Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0183" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0183"/>
        <description>TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="tcpdump version is less than 3.7.2-7.E3.2" negate="false" test_ref="oval:org.mitre.oval:tst:1374"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/sbin/tcpdump is executable">
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1373"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1372"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1371"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:976" version="1" class="vulnerability">
      <metadata>
        <title>tcpdump Identification Payload in ISAKMP Packets Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0184" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0184"/>
        <description>Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length that becomes less than 8 during byte order conversion, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2483"/>
          <criterion comment="tcpdump version is less than 3.7.2-7.E3.2" negate="false" test_ref="oval:org.mitre.oval:tst:1374"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/sbin/tcpdump is executable">
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1373"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1372"/>
            <criterion comment="/usr/sbin/tcpdump is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1371"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:977" version="1" class="vulnerability">
      <metadata>
        <title>Multiple BO Vulnerabilities in LHA get_header Function</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0234" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0234"/>
        <description>Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewall, allow remote attackers or local users to execute arbitrary code via long directory or file names in an LHA archive, which triggers the overflow when testing or extracting the archive.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="lha version is less than 1.14i-10.2" negate="false" test_ref="oval:org.mitre.oval:tst:1370"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/lha is executable">
            <criterion comment="/usr/bin/lha is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1369"/>
            <criterion comment="/usr/bin/lha is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1368"/>
            <criterion comment="/usr/bin/lha is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1367"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:978" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Directory Traversal Vulnerabilities in LHA</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0235" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0235"/>
        <description>Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes ("//absolute/path").</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="lha version is less than 1.14i-10.2" negate="false" test_ref="oval:org.mitre.oval:tst:1370"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/lha is executable">
            <criterion comment="/usr/bin/lha is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1369"/>
            <criterion comment="/usr/bin/lha is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1368"/>
            <criterion comment="/usr/bin/lha is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1367"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:979" version="1" class="vulnerability">
      <metadata>
        <title>Utempter Directory Traversal Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0233" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0233"/>
        <description>Utempter allows device names that contain .. (dot dot) directory traversal sequences, which allows local users to overwrite arbitrary files via a symlink attack on device names in combination with an application that trusts the utmp or wtmp files.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="utempter version is less than 0.5.5-1.3EL.0" negate="false" test_ref="oval:org.mitre.oval:tst:1366"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="/usr/sbin/utempter is executable">
            <criterion comment="/usr/sbin/utempter is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1365"/>
            <criteria operator="OR" comment="/usr/sbin/utempter is executable">
              <criterion comment="/usr/sbin/utempter is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1364"/>
              <criterion comment="/usr/sbin/utempter is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1363"/>
              <criterion comment="/usr/sbin/utempter is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1362"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:980" version="1" class="vulnerability">
      <metadata>
        <title>NTLM Authentication BO in Squid Web Proxy Cache</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0541" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0541"/>
        <description>Buffer overflow in the ntlm_check_auth (NTLM authentication) function for Squid Web Proxy Cache 2.5.x and 3.x, when compiled with NTLM handlers enabled, allows remote attackers to execute arbitrary code via a long password ("pass" variable).</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="squid version is less than 2.5.STABLE3-6.3E" negate="false" test_ref="oval:org.mitre.oval:tst:1361"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="squid is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1360"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:982" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal Denial of Service via SIP Messages</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0504" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0504"/>
        <description>Ethereal 0.10.3 allows remote attackers to cause a denial of service (crash) via certain SIP messages between Hotsip servers and clients.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.30E.2" negate="false" test_ref="oval:org.mitre.oval:tst:1359"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.30E.2" negate="false" test_ref="oval:org.mitre.oval:tst:1358"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:984" version="1" class="vulnerability">
      <metadata>
        <title>Racoon Denial of Service via Large Length Field</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0403" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0403"/>
        <description>Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet with a large length field.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="ipsec-tools version is less than 0.2.5-0.4" negate="false" test_ref="oval:org.mitre.oval:tst:1430"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="racoon is listening on the network" negate="false" test_ref="oval:org.mitre.oval:tst:1429"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:986" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal AIM Dissector Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0505" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0505"/>
        <description>The AIM dissector in Ethereal 0.10.3 allows remote attackers to cause a denial of service (assert error) via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.30E.2" negate="false" test_ref="oval:org.mitre.oval:tst:1359"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.30E.2" negate="false" test_ref="oval:org.mitre.oval:tst:1358"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:987" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal SPNEGO Dissector Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0506" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0506"/>
        <description>The SPNEGO dissector in Ethereal 0.9.8 to 0.10.3 allows remote attackers to cause a denial of service (crash) via unknown attack vectors that cause a null pointer dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.30E.2" negate="false" test_ref="oval:org.mitre.oval:tst:1359"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.30E.2" negate="false" test_ref="oval:org.mitre.oval:tst:1358"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:988" version="1" class="vulnerability">
      <metadata>
        <title>Ethereal MMSE Dissector Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0507" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0507"/>
        <description>Buffer overflow in the MMSE dissector for Ethereal 0.10.1 to 0.10.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-10T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criteria operator="OR" comment="Vulnerable Config">
            <criterion comment="ethereal version is less than 0.10.3-0.30E.2" negate="false" test_ref="oval:org.mitre.oval:tst:1359"/>
            <criterion comment="ethereal-gnome version is less than 0.10.3-0.30E.2" negate="false" test_ref="oval:org.mitre.oval:tst:1358"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Vulnerable Config">
            <criteria operator="OR" comment="/usr/bin/ethereal is executable">
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1529"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1528"/>
              <criterion comment="/usr/bin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1527"/>
            </criteria>
            <criteria operator="OR" comment="/usr/sbin/ethereal is executable">
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1526"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1525"/>
              <criterion comment="/usr/sbin/ethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1524"/>
            </criteria>
            <criteria operator="OR" comment="/usr/bin/tethereal is executable">
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1523"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1522"/>
              <criterion comment="/usr/bin/tethereal is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1521"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:991" version="1" class="vulnerability">
      <metadata>
        <title>Mutliple BO Vulnerabilities in MIT Kerberos 5</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>MIT Kerberos 5 (krb5)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0523" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0523"/>
        <description>Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-07-21T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-08-04T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="krb5-libs rpm version prior to 1.2.7-24 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1351"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:993" version="1" class="vulnerability">
      <metadata>
        <title>CVS Improper Handling of Malformed Entry Lines</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>CVS</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0414" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0414"/>
        <description>CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-07-21T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-08-04T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="cvs rpm version prior to 1.11.2-24 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1347"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/cvs is executable">
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1381"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1380"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1379"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:994" version="1" class="vulnerability">
      <metadata>
        <title>CVS error_prog_name Double-free Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>CVS</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0416" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0416"/>
        <description>Double-free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-06-29T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-07-21T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-08-04T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="cvs rpm version prior to 1.11.2-24 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1347"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="/usr/bin/cvs is executable">
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1381"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1380"/>
            <criterion comment="/usr/bin/cvs is executable" negate="false" test_ref="oval:org.mitre.oval:tst:1379"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:997" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise Linux 3 Kernel Serial Link Information Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Red Hat Enteprise Linux 3</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0461" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0461"/>
        <description>/proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-05-12T12:00:00.000-04:00">
              <contributor organization="Bastille Linux">Jay Beale</contributor>
            </submitted>
            <status_change date="2004-06-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-30T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-07-12T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="kernel version is less than 2.4.21-15.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1342"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/proc/tty/driver/serial is world-readable" negate="false" test_ref="oval:org.mitre.oval:tst:1341"/>
          <criterion comment="/proc/tty/driver/ is world-executable" negate="false" test_ref="oval:org.mitre.oval:tst:1340"/>
          <criterion comment="/proc/tty/ is world-executable" negate="false" test_ref="oval:org.mitre.oval:tst:1339"/>
          <criterion comment="/proc/ is world-executable" negate="false" test_ref="oval:org.mitre.oval:tst:1338"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:219" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0516" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0516"/>
        <description>Unspecified vulnerability in the kernel processing in Solaris 10 64 bit platform, when running in 64-bit mode, allows local users to cause a denial of service (system panic) via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-25T12:47:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-10T20:39:58.679-04:00">INTERIM</status_change>
            <status_change date="2006-10-31T19:35:30.871-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 10 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3955"/>
          <criterion comment="x86" negate="false" test_ref="oval:org.mitre.oval:tst:3338"/>
          <criterion comment="Patch 118844-14 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3195"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="system is running in 64-bit mode" negate="false" test_ref="oval:org.mitre.oval:tst:3884"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1031" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>swagentd</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00622788"/>
        <description>An undisclosed vulnerability has been identified in swagentd that could potentially be exploited remotely by an unauthenticated attacker to cause swagentd to abort.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:14:06.982-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:14:57.927-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="Installed B.11.00 software has not been patched for c00622788" negate="false">
          <criteria operator="AND" comment="DCE-Core.DCE-CORE-SHLIB is installed without PHSS_29963 or subsequent" negate="false">
            <criterion comment="DCE-Core.DCE-CORE-SHLIB is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3858"/>
            <criterion comment="Patch PHSS_29963 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3649"/>
          </criteria>
          <criteria operator="AND" comment="SW-DIST.SD-AGENT is installed without PHCO_28847 or subsequent" negate="false">
            <criterion comment="SW-DIST.SD-AGENT is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3857"/>
            <criterion comment="Patch PHCO_28847 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3993"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1112" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0791" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0791"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a blind throughput-reduction attack using spoofed Source Quench packets, aka the "ICMP Source Quench attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:12.194-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:00.625-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.04" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.04" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33427 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3468"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1160" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Perl</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1323" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1323"/>
        <description>Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between successive calls.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:13.239-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:02.270-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criterion comment="Solaris 8 is installed." negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101426 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 119449-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3644"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101426 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 119450-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3771"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1163" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0516" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0516"/>
        <description>Unspecified vulnerability in the kernel processing in Solaris 10 64 bit platform, when running in 64-bit mode, allows local users to cause a denial of service (system panic) via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:13.671-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:03.356-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 10 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
        <criterion comment="x86" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
        <criterion comment="Patch 118844-14 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3960"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1177" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0790" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0790"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "blind connection-reset attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:14.323-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:04.370-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33159 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3779"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:170" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>gzip</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1228" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1228"/>
        <description>Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:27.272-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:16.282-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112668-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4005"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112669-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4070"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 116340-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3666"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 116341-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3778"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120719-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3295"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120720-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3621"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:174" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <description>An SCLT_INCOMPLETE error was blocking receipt of proper READY status from the array.  A timer was changed to allow array to reach full READY before SCSI response is tested.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:28.688-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:19.562-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="OS-Core.ARRAY-MGMT or OS-Core.ADMN-ENG-A-MAN (11.11)" negate="false">
          <criterion comment="OS-Core.ARRAY-MGMT (B.11.11) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:4152"/>
          <criterion comment="OS-Core.ADMN-ENG-A-MAN (B.11.11) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3830"/>
        </criteria>
        <criterion comment="Patch PHCO_23263 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3210"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:176" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0790" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0790"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "blind connection-reset attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:29.514-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:21.329-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33395 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3393"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:181" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1060" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1060"/>
        <description>Multiple TCP/IP and ICMP implementations, when using Path MTU (PMTU) discovery (PMTUD), allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via forged ICMP ("Fragmentation Needed and Don't Fragment was Set") packets with a low next-hop MTU value, aka the "Path MTU discovery attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:32.283-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:28.466-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33395 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3393"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:184" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0791" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0791"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a blind throughput-reduction attack using spoofed Source Quench packets, aka the "ICMP Source Quench attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:34.000-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:32.152-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33159 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3779"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:196" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1060" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1060"/>
        <description>Multiple TCP/IP and ICMP implementations, when using Path MTU (PMTU) discovery (PMTUD), allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via forged ICMP ("Fragmentation Needed and Don't Fragment was Set") packets with a low next-hop MTU value, aka the "Path MTU discovery attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:40.215-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:43.584-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33159 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3779"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:211" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0790" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0790"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "blind connection-reset attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:44.322-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:51.097-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_32606 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3439"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:255" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Operating System</product>
        </affected>
        <reference source="MISC" ref_id="http://sunsolve9.sun.com/search/document.do?assetkey=1-26-101519-1&amp;searchclause="/>
        <description>Solaris 9 patches 112908-12 and 115168-03 introduced a logging flaw that can log passwords in clear text.  This can lead to privilege escalation for a local user.  It can also lead to the compromise of other systems if passwords are reuse introduced a logging flaw that can log passwords in clear text.  This can lead to privilege escalation for a local user.  It can also lead to the compromise of other systems if passwords are reused.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:44.676-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:52.059-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101519 criteria." negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 112908-12 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:4105"/>
            <criterion comment="Patch 112908-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3957"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101519 criteria." negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 115168-03 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3258"/>
            <criterion comment="Patch 115168-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4013"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/krb5/krb5.conf is configured as a kerberos client" negate="false" test_ref="oval:org.mitre.oval:tst:3487"/>
          <criterion comment="pam_krb5 is an auth module with debug enabled" negate="false" test_ref="oval:org.mitre.oval:tst:4074"/>
          <criterion comment="Logging of LOG_DEBUG level messages is enabled" negate="false" test_ref="oval:org.mitre.oval:tst:3394"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:297" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <product>patchadd</product>
        </affected>
        <reference source="MISC" ref_id="http://sunsolve9.sun.com/search/document.do?assetkey=1-26-101666-1&amp;searchclause="/>
        <description>The patchadd facility for Solaris 10 fails to install T-patches.  Sun sometimes releases a T-patch as a temporary version of a patch prior to the final release of that patch.  While this flaw does not directly represent a vulnerability, it does prevent the timely application of some (possibly critical) updates.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:45.131-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:52.633-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101666 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 119254-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3284"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101666 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 119255-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3698"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:307" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Perl</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0615" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0615"/>
        <description>Cross-site scripting (XSS) vulnerability in start_form() of CGI.pm allows remote attackers to insert web script via a URL that is fed into the form's action parameter.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:45.271-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:52.795-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criterion comment="Solaris 8 is installed." negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101426 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 119449-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3644"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101426 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 119450-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3771"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:312" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>swagentd</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00622788"/>
        <description>An undisclosed vulnerability has been identified in swagentd that could potentially be exploited remotely by an unauthenticated attacker to cause swagentd to abort.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:45.485-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:53.044-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.04" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.04" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="Installed B.11.04 software has not been patched for c00622788" negate="false">
          <criteria operator="AND" comment="DCE-Core.DCE-CORE-SHLIB is installed without PHSS_30302 or subsequent" negate="false">
            <criterion comment="DCE-Core.DCE-CORE-SHLIB is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3858"/>
            <criterion comment="Patch PHSS_30302 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3559"/>
          </criteria>
          <criteria operator="AND" comment="SW-DIST.SD-AGENT is installed without PHCO_30006 or subsequent" negate="false">
            <criterion comment="SW-DIST.SD-AGENT is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3857"/>
            <criterion comment="Patch PHCO_30006 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3243"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:354" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <description>An SCLT_INCOMPLETE error was blocking receipt of proper READY status from the array.  A timer was changed to allow array to reach full READY before SCSI response is tested.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:45.771-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:53.395-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00 or 11.10" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.10" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.10" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.10" negate="false" test_ref="oval:org.mitre.oval:tst:3540"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.10" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.10" negate="false" test_ref="oval:org.mitre.oval:tst:3540"/>
            </criteria>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="OS-Core.ARRAY-MGMT or OS-Core.ADMN-ENG-A-MAN (11.00/11.10)" negate="false">
          <criterion comment="OS-Core.ARRAY-MGMT (B.11.00) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3969"/>
          <criterion comment="OS-Core.ADMN-ENG-A-MAN (B.11.00) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3707"/>
          <criterion comment="OS-Core.ARRAY-MGMT (B.11.10) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3449"/>
          <criterion comment="OS-Core.ADMN-ENG-A-MAN (B.11.10) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3377"/>
        </criteria>
        <criterion comment="Patch PHCO_23262 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3536"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:360" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 8</platform>
          <product>Access Manager</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0531" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0531"/>
        <description>Unspecified vulnerability in Sun Java System Access Manager 7.0 allows local users logged in as "root" to bypass authentication and gain top-level administrator privileges via the amadmin CLI tool.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:45.919-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:53.570-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="SPARC" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
        <criterion comment="Sun Java System Access Manager 7 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3551"/>
        <criterion comment="Patch 120954-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:397" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Kerberos</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1174" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1174"/>
        <description>MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of service (application crash) via a certain valid TCP connection that causes a free of unallocated memory.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:46.201-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:53.901-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112536-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3209"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112537-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3424"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112237-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3567"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112238-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3898"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) with Supplmental Encryption Packages meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criteria operator="OR" comment="Solaris Supplemental Encryption Packages are installed" negate="false">
            <criterion comment="Pkg SUNWcry (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3198"/>
            <criterion comment="Pkg SUNWcryr (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3694"/>
          </criteria>
          <criterion comment="Patch 112390-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3640"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) with Supplmental Encryption Packages meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criteria operator="OR" comment="Solaris Supplemental Encryption Packages are installed" negate="false">
            <criterion comment="Pkg SUNWcry (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3198"/>
            <criterion comment="Pkg SUNWcryr (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3694"/>
          </criteria>
          <criterion comment="Patch 112240-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3497"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112908-20 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3389"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 115168-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3624"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120469-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3561"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 120470-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3418"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:405" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1060" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1060"/>
        <description>Multiple TCP/IP and ICMP implementations, when using Path MTU (PMTU) discovery (PMTUD), allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via forged ICMP ("Fragmentation Needed and Don't Fragment was Set") packets with a low next-hop MTU value, aka the "Path MTU discovery attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:46.701-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:54.231-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_32606 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3439"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:410" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:46.831-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:54.395-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.04" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.04" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
        </criteria>
        <criterion comment="InternetSrvcs.INETSVCS-RUN for B.11.04 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3519"/>
        <criterion comment="Patch PHNE_34077 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3609"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:412" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0790" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0790"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "blind connection-reset attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:46.966-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:54.574-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.04" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.04" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33427 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3468"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:421" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:47.099-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:54.727-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
        </criteria>
        <criterion comment="InternetSrvcs.INETSVCS-RUN for B.11.23 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3193"/>
        <criterion comment="Patch PHNE_33412 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:4132"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:438" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:47.606-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:55.094-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
        </criteria>
        <criterion comment="WUFTP-26.INETSVCS-FTP with version less than B.11.00.01.005 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3962"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:464" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0791" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0791"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a blind throughput-reduction attack using spoofed Source Quench packets, aka the "ICMP Source Quench attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:47.997-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:55.567-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 118822-27 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3505"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 118844-28 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3302"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:514" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0790" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0790"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "blind connection-reset attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:48.503-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:56.136-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="An HPUX 11.11 or 11.23 is installed" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="TOUR_PRODUCT.T-NET2-KRN with version less than A.03.00 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3415"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:593" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:49.302-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:56.734-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
          </criteria>
        </criteria>
        <criterion comment="InternetSrvcs.INETSVCS-RUN for B.11.23 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3687"/>
        <criterion comment="Patch PHNE_33414 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3428"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:596" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0791" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0791"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a blind throughput-reduction attack using spoofed Source Quench packets, aka the "ICMP Source Quench attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:49.438-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:56.897-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="An HPUX 11.11 or 11.23 is installed" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="TOUR_PRODUCT.T-NET2-KRN with version less than A.03.00 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3415"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:610" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 10</platform>
          <product>Operating System</product>
        </affected>
        <description>An SCLT_INCOMPLETE error was blocking receipt of proper READY status from the array.  A timer was changed to allow array to reach full READY before SCSI response is tested.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:49.786-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:57.424-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.X" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.20" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 10.20" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.10.20" negate="false" test_ref="oval:org.mitre.oval:tst:3807"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 10.20" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.10.20" negate="false" test_ref="oval:org.mitre.oval:tst:3807"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.01" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 10.01" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.10.01" negate="false" test_ref="oval:org.mitre.oval:tst:3581"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 10.01" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.10.01" negate="false" test_ref="oval:org.mitre.oval:tst:3581"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.10" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 10.10" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.10.10" negate="false" test_ref="oval:org.mitre.oval:tst:3985"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 10.10" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.10.10" negate="false" test_ref="oval:org.mitre.oval:tst:3985"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.30" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 10.30" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.10.30" negate="false" test_ref="oval:org.mitre.oval:tst:3461"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 10.30" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.10.30" negate="false" test_ref="oval:org.mitre.oval:tst:3461"/>
            </criteria>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="OS-Core.ADMN-ENG-A-MAN or OS-Core.C2400-UTIL is installed" negate="false">
          <criterion comment="OS-Core.ADMN-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3370"/>
          <criterion comment="OS-Core.C2400-UTIL is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3376"/>
        </criteria>
        <criterion comment="Patch PHCO_23261 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3674"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:615" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:49.969-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:57.625-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
        </criteria>
        <criterion comment="WUFTP-26.INETSVCS-FTP with version less than B.11.11.01.006 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3641"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:616" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>swagentd</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00622788"/>
        <description>An undisclosed vulnerability has been identified in swagentd that could potentially be exploited remotely by an unauthenticated attacker to cause swagentd to abort.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:50.134-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:57.789-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="Installed B.11.11 software has not been patched for c00622788" negate="false">
          <criteria operator="AND" comment="DCE-Core.DCE-CORE-SHLIB is installed without PHSS_29964 or subsequent" negate="false">
            <criterion comment="DCE-Core.DCE-CORE-SHLIB is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3858"/>
            <criterion comment="Patch PHSS_29964 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3974"/>
          </criteria>
          <criteria operator="AND" comment="SW-DIST.SD-AGENT is installed without PHCO_28848 or subsequent" negate="false">
            <criterion comment="SW-DIST.SD-AGENT is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3857"/>
            <criterion comment="Patch PHCO_28848 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3831"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:622" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0790" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0790"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "blind connection-reset attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:50.491-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:58.160-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 118822-27 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3505"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101658 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 118844-28 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3302"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:651" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1060" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1060"/>
        <description>Multiple TCP/IP and ICMP implementations, when using Path MTU (PMTU) discovery (PMTUD), allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via forged ICMP ("Fragmentation Needed and Don't Fragment was Set") packets with a low next-hop MTU value, aka the "Path MTU discovery attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:51.103-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:58.450-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="An HPUX 11.11 or 11.23 is installed" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="TOUR_PRODUCT.T-NET2-KRN with version less than A.03.00 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3415"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:688" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0791" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0791"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a blind throughput-reduction attack using spoofed Source Quench packets, aka the "ICMP Source Quench attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:51.358-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:58.763-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_32606 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3439"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:724" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 7</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0523" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0523"/>
        <description>Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:52.045-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:59.217-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101512 criteria." negate="false">
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 112536-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3544"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101512 criteria." negate="false">
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 112537-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3498"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101512 criteria." negate="false">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 112237-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3354"/>
            <criterion comment="Patch 112390-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3509"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101512 criteria." negate="false">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 112240-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3366"/>
            <criterion comment="Patch 112238-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4043"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101512 criteria." negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 112908-15 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3824"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101512 criteria." negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 115168-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4066"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="Target's configuration meets 101512 configuration criteria." negate="false">
            <criteria operator="OR" comment="Solaris Enterprise Authentication Mechanism (ANY SUNWkr5sl/SUNWkr5sv/SUNWkrgdo/SUNWkrggl)" negate="false">
              <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed" negate="false" test_ref="oval:org.mitre.oval:tst:3514"/>
              <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sl) installed" negate="false" test_ref="oval:org.mitre.oval:tst:3192"/>
              <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrgdo) installed" negate="false" test_ref="oval:org.mitre.oval:tst:3873"/>
              <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrggl) installed" negate="false" test_ref="oval:org.mitre.oval:tst:3369"/>
            </criteria>
            <criteria operator="AND" comment="SEAM is not installed, but target is a kerberos client." negate="false">
              <criteria operator="OR" comment="Solaris Enterprise Authentication Mechanism (ANY SUNWkr5sl/SUNWkr5sv/SUNWkrgdo/SUNWkrggl)" negate="true">
                <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed" negate="false" test_ref="oval:org.mitre.oval:tst:3514"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sl) installed" negate="false" test_ref="oval:org.mitre.oval:tst:3192"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrgdo) installed" negate="false" test_ref="oval:org.mitre.oval:tst:3873"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrggl) installed" negate="false" test_ref="oval:org.mitre.oval:tst:3369"/>
              </criteria>
              <criterion comment="/etc/krb5/krb5.conf is configured as a kerberos client" negate="false" test_ref="oval:org.mitre.oval:tst:3487"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:726" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0791" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0791"/>
        <description>Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a blind throughput-reduction attack using spoofed Source Quench packets, aka the "ICMPSource Quench attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:52.288-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:59.492-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33395 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3393"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:728" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Perl</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0448" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0448"/>
        <description>Race condition in the rmtree function in File::Path.pm in Perl before 5.8.4 allows local users to create arbitrary setuid binaries in the tree being deleted, a different vulnerability than CVE-2004-0452.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:52.495-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:15:59.663-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Perl 5.6 or 5.8 vulnerable on 11.00, 11.11, or 11.23" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, or 11.23" negate="false">
            <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
              <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
                <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
                <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
              </criteria>
              <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
                <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
                <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
              </criteria>
            </criteria>
            <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
              <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
                <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
                <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
              </criteria>
              <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
                <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
                <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
              </criteria>
            </criteria>
            <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
              <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
                <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
                <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
              </criteria>
              <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
                <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
                <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
              </criteria>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="Perl version 5.6.0 is installed or 5.8.0 without revision G or later is installed" negate="false">
            <criterion comment="Perl 5.6.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3419"/>
            <criterion comment="Perl 5.8.0 (revision F or earlier) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3902"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Perl 5.8.2 vulnerable on 11.00 or 11.11" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00 or 11.11" negate="false">
            <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
              <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
                <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
                <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
              </criteria>
              <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
                <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
                <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
              </criteria>
            </criteria>
            <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
              <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
                <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
                <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
              </criteria>
              <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
                <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
                <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
              </criteria>
            </criteria>
          </criteria>
          <criterion comment="Perl 5.8.2,revision C or earlier is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3226"/>
        </criteria>
        <criteria operator="AND" comment="Perl 5.8.2 vulnerable on 11.23" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
            <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
            </criteria>
          </criteria>
          <criterion comment="Perl 5.8.2,revision E or earlier is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3635"/>
        </criteria>
        <criteria operator="AND" comment="Perl 5.8.3 vulnerable on 11.0, 11.11, or 11.23" negate="false">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, or 11.23" negate="false">
            <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11" negate="false">
              <criteria operator="AND" comment="700 Series OS Release 11.11" negate="false">
                <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
                <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
              </criteria>
              <criteria operator="AND" comment="800 Series OS Release 11.11" negate="false">
                <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
                <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:3704"/>
              </criteria>
            </criteria>
            <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00" negate="false">
              <criteria operator="AND" comment="700 Series OS Release 11.00" negate="false">
                <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
                <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
              </criteria>
              <criteria operator="AND" comment="800 Series OS Release 11.00" negate="false">
                <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
                <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:3571"/>
              </criteria>
            </criteria>
            <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23" negate="false">
              <criteria operator="AND" comment="700 Series OS Release 11.23" negate="false">
                <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
                <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
              </criteria>
              <criteria operator="AND" comment="800 Series OS Release 11.23" negate="false">
                <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
                <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:3901"/>
              </criteria>
            </criteria>
          </criteria>
          <criterion comment="Perl 5.8.3,revision A is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3847"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:736" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Kerberos</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1175" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1175"/>
        <description>Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to cause a denial of service (apllication crash) and possibly execute arbitrary code via a certain valid TCP or UDP request.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:52.863-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:00.079-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112536-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3209"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112537-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3424"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112237-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3567"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 112238-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3898"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) with Supplmental Encryption Packages meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criteria operator="OR" comment="Solaris Supplemental Encryption Packages are installed" negate="false">
            <criterion comment="Pkg SUNWcry (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3198"/>
            <criterion comment="Pkg SUNWcryr (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3694"/>
          </criteria>
          <criterion comment="Patch 112390-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3640"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) with Supplmental Encryption Packages meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criteria operator="OR" comment="Solaris Supplemental Encryption Packages are installed" negate="false">
            <criterion comment="Pkg SUNWcry (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3198"/>
            <criterion comment="Pkg SUNWcryr (Supplemental Encryption) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3694"/>
          </criteria>
          <criterion comment="Patch 112240-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3497"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112908-20 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3389"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 115168-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3624"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120469-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3561"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101809 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
          <criterion comment="Patch 120470-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3418"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:755" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <platform>Sun Solaris 9</platform>
          <product>Access Manager</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0531" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0531"/>
        <description>Unspecified vulnerability in Sun Java System Access Manager 7.0 allows local users logged in as "root" to bypass authentication and gain top-level administrator privileges via the amadmin CLI tool.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:53.102-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:00.406-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="x86" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
        <criterion comment="Sun Java System Access Manager 7 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3551"/>
        <criterion comment="Patch 120955-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3363"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:765" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>gzip</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0988" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0988"/>
        <description>Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:53.441-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:00.590-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112668-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4005"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 112669-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4070"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 116340-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3666"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 116341-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3778"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120719-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3295"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101816 criteria." negate="false">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
          <criterion comment="Patch 120720-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3621"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:899" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1060" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1060"/>
        <description>Multiple TCP/IP and ICMP implementations, when using Path MTU (PMTU) discovery (PMTUD), allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via forged ICMP ("Fragmentation Needed and Don't Fragment was Set") packets with a low next-hop MTU value, aka the "Path MTU discovery attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:48:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:54.417-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:01.065-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04" negate="false">
          <criteria operator="AND" comment="700 Series OS Release 11.04" negate="false">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:3443"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.04" negate="false">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:4124"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:3294"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_33427 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:3468"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:943" version="2" class="vulnerability">
      <metadata>
        <title/>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Xsun</product>
        </affected>
        <reference source="MISC" ref_id="http://sunsolve9.sun.com/search/document.do?assetkey=1-26-101800-1&amp;searchclause="/>
        <description>A security vulnerability in Xsun and Xprt may allow a local unprivileged user to execute arbitrary code at the privilege level of either the XSun or Xprt command.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-09-22T05:52:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-09-22T20:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-10-07T09:15:54.666-04:00">INTERIM</status_change>
            <status_change date="2006-10-24T09:16:01.243-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criterion comment="Solaris 7 is installed." negate="false" test_ref="oval:org.mitre.oval:tst:3576"/>
          <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 108652-93 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3400"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3437"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 108653-82 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3355"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 112785-50 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:4130"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3172"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 112786-39 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3404"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3237"/>
            <criterion comment="Patch 119059-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3997"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101800 criteria." negate="false">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3680"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3912"/>
            <criterion comment="Patch 119060-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3529"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="OR">
          <criteria operator="AND" comment="File Xsun is SUID|SGID AND Executable" negate="false">
            <criteria operator="OR" comment="File Xsun SUID|SGID" negate="false">
              <criterion comment="File Xsun SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3963"/>
              <criterion comment="File Xprt SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3558"/>
            </criteria>
            <criterion comment="File Xsun SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3178"/>
          </criteria>
          <criteria operator="AND" comment="File Xprt is SUID|SGID AND Executable" negate="false">
            <criteria operator="OR" comment="File Xprt SUID|SGID" negate="false">
              <criterion comment="File Xsun SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3963"/>
              <criterion comment="File Xprt SUID" negate="false" test_ref="oval:org.mitre.oval:tst:3558"/>
            </criteria>
            <criterion comment="File Xsun SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3178"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1044" version="1" class="vulnerability">
      <metadata>
        <title>Solaris Xsun Privilege Escalation via Pixmaps Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>X</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2495" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2495"/>
        <description>Multiple integer overflows in XFree86 before 4.3.0 allow user-assisted attackers to execute arbitrary code via a crafted pixmap image.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-12T01:16:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 8 (SPARC,Xsun) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
            <criterion comment="Patch 108652-94 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1254"/>
            <criterion comment="File Xorg exists" negate="true" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (SPARC,Xsun) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
            <criterion comment="Patch 112785-52 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1253"/>
            <criterion comment="File Xorg exists" negate="true" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (SPARC,Xsun) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
            <criterion comment="Patch 119059-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1252"/>
            <criterion comment="File Xorg exists" negate="true" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 8 (x86,Xsun) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
            <criterion comment="Patch 108653-83 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1251"/>
            <criterion comment="File Xorg exists" negate="true" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 (x86,Xsun) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
            <criterion comment="Patch 112786-41 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1250"/>
            <criterion comment="File Xorg exists" negate="true" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86,Xsun) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
            <criterion comment="Patch 119060-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1249"/>
            <criterion comment="File Xorg exists" negate="true" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="The Xsun X server is running" negate="false" test_ref="oval:org.mitre.oval:tst:1248"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1577" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX Shared Library Privilege Escalation Vulnerability (B.11.00)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0436" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0436"/>
        <description>Unspecified vulnerability in HP HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain privileges via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-30T07:20:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-01T09:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
          <criteria operator="AND" comment="700 Series OS Release 11.00">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHCO_29249 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:847"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:648" version="2" class="vulnerability">
      <metadata>
        <title>HP-UX wuftpd Privilege Escalation Vulnerability (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0148" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0148"/>
        <description>wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home directory, which causes wu-ftpd to use the root directory instead.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-30T07:20:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-01T09:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-07-03T12:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-10-07T09:15:50.907-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
        <criterion comment="InternetSrvcs.INETSVCS2-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2472"/>
        <criteria operator="OR" comment="Either PHNE_30983 or PHNE_31732 is installed" negate="true">
          <criterion comment="Patch PHNE_30983 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2471"/>
          <criterion comment="Patch PHNE_31732 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2470"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:992" version="2" class="vulnerability">
      <metadata>
        <title>HP-UX Core Stack Size DoS Vulnerability (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3295" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3295"/>
        <description>Unspecified vulnerability in HP-UX B.11.23 on Itanium platforms allows local users to cause a denial of service due to a "specific stack size."</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:55:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <modified date="2006-01-31T12:19:00.000-04:00" comment="Updated reference to CVE-2005-3295.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-07-03T12:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-10-07T09:15:54.943-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
        <criterion comment="OS-Core.CORE2-KRN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1350"/>
        <criteria operator="OR" comment="Either PHKL_33713 or PHKL_33714 or later is installed" negate="true">
          <criterion comment="Patch PHKL_33713 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1349"/>
          <criterion comment="Patch PHKL_33714 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1348"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:998" version="1" class="vulnerability">
      <metadata>
        <title>Solaris Xorg Privilege Escalation via Pixmaps Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>X</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2495" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2495"/>
        <description>Multiple integer overflows in XFree86 before 4.3.0 allow user-assisted attackers to execute arbitrary code via a crafted pixmap image.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-12T01:16:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 9 (x86,Xorg) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
            <criterion comment="Patch 118908-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1337"/>
            <criterion comment="File Xorg exists" negate="false" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86,Xorg) meets Sun Alert ID 101926 criteria.">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
            <criterion comment="Patch 118966-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1335"/>
            <criterion comment="File Xorg exists" negate="false" test_ref="oval:org.mitre.oval:tst:1336"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="The Xorg X server is running" negate="false" test_ref="oval:org.mitre.oval:tst:1334"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100108" version="1" class="vulnerability">
      <metadata>
        <title>Apache Nonce Verification Response Replay Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0987" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0987"/>
        <description>mod_digest for Apache before 1.3.31 does not properly verify the nonce of a client response by using a AuthNonce secret.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 116973-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:217"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 116974-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:216"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:215"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 114145-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:214"/>
        </criteria>
        <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100109" version="1" class="vulnerability">
      <metadata>
        <title>Apache Error Log Escape Sequence Filtering Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0020" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0020"/>
        <description>Apache does not filter terminal escape sequences from its error logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 116973-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:217"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 116974-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:216"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:215"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 114145-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:214"/>
        </criteria>
        <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100110" version="1" class="vulnerability">
      <metadata>
        <title>Apache Listening Socket Starvation Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0174" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0174"/>
        <description>Apache 1.4.x before 1.3.30, and 2.0.x before 2.0.49, when using multiple listening sockets on certain platforms, allows remote attackers to cause a denial of service (blocked new connections) via a "short-lived connection on a rarely-accessed listening socket."</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 116973-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:217"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 116974-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:216"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:215"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 114145-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:214"/>
        </criteria>
        <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100111" version="1" class="vulnerability">
      <metadata>
        <title>Apache Allow/Deny Parsing Error</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0993" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0993"/>
        <description>mod_access in Apache 1.3 before 1.3.30, when running big-endian 64-bit platforms, does not properly parse Allow/Deny rules using IP addresses without a netmask, which could allow remote attackers to bypass intended access restrictions.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 116973-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:217"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:215"/>
        </criteria>
        <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100112" version="1" class="vulnerability">
      <metadata>
        <title>Apache mod_proxy Content-Length Header Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0492" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0492"/>
        <description>Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 116973-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:217"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 116974-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:216"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:215"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101555 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 114145-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:214"/>
        </criteria>
        <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100113" version="1" class="vulnerability">
      <metadata>
        <title>X Display Manager DoS via Invalid XDMCP Request</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>XDM</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1347" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1347"/>
        <description>X Display Manager (XDM) on Solaris 8 allows remote attackers to cause a denial of service (XDM crash) via an invalid X Display Manager Control Protocol (XDMCP) request.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T04:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <modified date="2005-09-20T04:00:00.000-04:00" comment="Added CVE #">
              <contributor organization="The MITRE Corporation">Christine Walzer</contributor>
            </modified>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101549 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 111844-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:213"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101549 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 111845-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:212"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101549 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 112785-38 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:211"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101549 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 112786-27 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:210"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100114" version="1" class="vulnerability">
      <metadata>
        <title>libtiff RLE Decoder Buffer Overflow Vulnerabilities</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>libtiff</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0803" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0803"/>
        <description>Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118953-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:209"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118954-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:208"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109931-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:207"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109932-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:206"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criteria operator="OR" comment="Solaris 9 (SPARC) supporting criteria for Sun Alert ID 101677.">
            <criteria operator="AND" comment="Solaris 9 (SPARC) supporting CDE criteria for Sun Alert ID 101677.">
              <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
              <criterion comment="Patch 114219-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:205"/>
            </criteria>
            <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
            <criterion comment="Pkg SUNWTiffx is installed" negate="false" test_ref="oval:org.mitre.oval:tst:203"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criteria operator="OR" comment="Solaris 9 (x86) supporting criteria for Sun Alert ID 101677.">
            <criteria operator="AND" comment="Solaris 9 (x86) supporting CDE criteria for Sun Alert ID 101677.">
              <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
              <criterion comment="Patch 114220-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:202"/>
            </criteria>
            <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
            <criterion comment="Pkg SUNWTiffx is installed" negate="false" test_ref="oval:org.mitre.oval:tst:203"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
          <criterion comment="Patch 119900-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:201"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
          <criterion comment="Patch 119901-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:200"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100115" version="1" class="vulnerability">
      <metadata>
        <title>libtiff tif_dirread divide-by-zero Denial of Service</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>libtiff</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0804" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0804"/>
        <description>Vulnerability in tif_dirread.c for libtiff allows remote attackers to cause a denial of service (application crash) via a TIFF image that causes a divide-by-zero error when the number of row bytes is zero, a different vulnerability than CVE-2005-2452.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118953-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:209"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118954-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:208"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109931-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:207"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109932-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:206"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criteria operator="OR" comment="Solaris 9 (SPARC) supporting criteria for Sun Alert ID 101677.">
            <criteria operator="AND" comment="Solaris 9 (SPARC) supporting CDE criteria for Sun Alert ID 101677.">
              <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
              <criterion comment="Patch 114219-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:205"/>
            </criteria>
            <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
            <criterion comment="Pkg SUNWTiffx is installed" negate="false" test_ref="oval:org.mitre.oval:tst:203"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criteria operator="OR" comment="Solaris 9 (x86) supporting criteria for Sun Alert ID 101677.">
            <criteria operator="AND" comment="Solaris 9 (x86) supporting CDE criteria for Sun Alert ID 101677.">
              <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
              <criterion comment="Patch 114220-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:202"/>
            </criteria>
            <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
            <criterion comment="Pkg SUNWTiffx is installed" negate="false" test_ref="oval:org.mitre.oval:tst:203"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
          <criterion comment="Patch 119900-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:201"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
          <criterion comment="Patch 119901-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:200"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100116" version="1" class="vulnerability">
      <metadata>
        <title>libtiff Malloc Error Denial of Service</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>libtiff</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0886" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0886"/>
        <description>Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF images that lead to incorrect malloc calls.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118953-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:209"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118954-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:208"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109931-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:207"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109932-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:206"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criteria operator="OR" comment="Solaris 9 (SPARC) supporting criteria for Sun Alert ID 101677.">
            <criteria operator="AND" comment="Solaris 9 (SPARC) supporting CDE criteria for Sun Alert ID 101677.">
              <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
              <criterion comment="Patch 114219-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:205"/>
            </criteria>
            <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
            <criterion comment="Pkg SUNWTiffx is installed" negate="false" test_ref="oval:org.mitre.oval:tst:203"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criteria operator="OR" comment="Solaris 9 (x86) supporting criteria for Sun Alert ID 101677.">
            <criteria operator="AND" comment="Solaris 9 (x86) supporting CDE criteria for Sun Alert ID 101677.">
              <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
              <criterion comment="Patch 114220-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:202"/>
            </criteria>
            <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
            <criterion comment="Pkg SUNWTiffx is installed" negate="false" test_ref="oval:org.mitre.oval:tst:203"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
          <criterion comment="Patch 119900-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:201"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
          <criterion comment="Patch 119901-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:200"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:100117" version="1" class="vulnerability">
      <metadata>
        <title>libtiff Directory Entry Count Integer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>libtiff</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1308" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1308"/>
        <description>Integer overflow in (1) tif_dirread.c and (2) tif_fax3.c for libtiff 3.5.7 and 3.7.0 allows remote attackers to execute arbitrary code via a TIFF file containing a TIFF_ASCII or TIFF_UNDEFINED directory entry with a -1 entry count, which leads to a heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-08-16T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-09-21T01:33:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-11-16T08:02:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 7 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118953-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:209"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 7 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118954-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:208"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109931-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:207"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109932-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:206"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criteria operator="OR" comment="Solaris 9 (SPARC) supporting criteria for Sun Alert ID 101677.">
            <criteria operator="AND" comment="Solaris 9 (SPARC) supporting CDE criteria for Sun Alert ID 101677.">
              <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
              <criterion comment="Patch 114219-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:205"/>
            </criteria>
            <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
            <criterion comment="Pkg SUNWTiffx is installed" negate="false" test_ref="oval:org.mitre.oval:tst:203"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criteria operator="OR" comment="Solaris 9 (x86) supporting criteria for Sun Alert ID 101677.">
            <criteria operator="AND" comment="Solaris 9 (x86) supporting CDE criteria for Sun Alert ID 101677.">
              <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
              <criterion comment="Patch 114220-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:202"/>
            </criteria>
            <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
            <criterion comment="Pkg SUNWTiffx is installed" negate="false" test_ref="oval:org.mitre.oval:tst:203"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
          <criterion comment="Patch 119900-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:201"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 101677 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Pkg SUNWTiff is installed" negate="false" test_ref="oval:org.mitre.oval:tst:204"/>
          <criterion comment="Patch 119901-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:200"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1029" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX ftpd Remote Unauthorized Data Access (B.11.04)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS-RUN, InternetSrvcs.INET-ENG-A-MAN, or VirtualVaultOS.VVOS-AUX-IA (B.11.04) is installed">
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1279"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1278"/>
          <criterion comment="VirtualVaultOS.VVOS-AUX-IA is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1277"/>
        </criteria>
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
          <criteria operator="AND" comment="700 Series OS Release 11.04">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.04">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_24395 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1275"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1074" version="1" class="vulnerability">
      <metadata>
        <title>Perl Format String Integer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <product>Perl</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3962" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3962"/>
        <description>Integer overflow in the format string functionality (Perl_sv_vcatpvfn) in Perl 5.9.2 and 5.8.6 Perl allows attackers to overwrite arbitrary memory and possibly execute arbitrary code via format string specifiers with large values, which causes an integer wrap and leads to a buffer overflow, as demonstrated using format string vulnerabilities in Perl applications.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-02T02:05:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 102192 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 119985-02 or later installed (SPARC-10)" negate="true" test_ref="oval:org.mitre.oval:tst:1197"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102192 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 122082-01 or later installed (x86-10)" negate="true" test_ref="oval:org.mitre.oval:tst:1196"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1098" version="1" class="vulnerability">
      <metadata>
        <title>usermod Recursive Ownership Error (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00614838"/>
        <description>A security flaw in some versions of the HP-UX usermod command can result in recursively changing the ownership of all directories and files under a user's home directory.  Specifically, executing	# usermod -d &lt;old home dir> -u &lt;new gid> -m &lt;username> or	# usermod -d &lt;old home dir> -u &lt;new or old gid> -m &lt;username> incorrectly changes ownership recursively to &lt;username>.  If the home directory is '/', this action will render the system inoperable.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1110" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos V5 Null Pointer DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Solaris Enterprise Authentication Mechanism (SEAM)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0058" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0058"/>
        <description>MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allows remote authenticated attackers to cause a denial of service (crash) on KDCs within the same realm via a certain protocol request that causes a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7 and Solaris Enterprise Authentication Mechanism OR Solaris 8 or 9 installed">
            <criteria operator="AND" comment="Solaris 7 AND Solaris Enterprise Authentication Mechanism installed">
              <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
              <criteria operator="OR" comment="Solaris Enterprise Authentication Mechanism (ANY SUNWkr5sl/SUNWkr5sv/SUNWkrgdo/SUNWkrggl)">
                <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1161"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sl) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1160"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrgdo) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1159"/>
                <criterion comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrggl) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1158"/>
              </criteria>
            </criteria>
            <criteria operator="OR" comment="Solaris 8 or 9 installed">
              <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
              <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
            </criteria>
          </criteria>
          <criterion comment="Patch 112536-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1157"/>
          <criterion comment="Patch 112908-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1156"/>
          <criterion comment="Patch 112237-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1155"/>
          <criterion comment="Patch 112390-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1154"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1147" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX wuftpd Privilege Escalation Vulnerability (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0148" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0148"/>
        <description>wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home directory, which causes wu-ftpd to use the root directory instead.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-30T07:20:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-01T09:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criterion comment="WUFTP-26.INETSVCS-FTP with version less than B.11.00.01.004 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1124"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1151" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX Trusted Mode remshd Remote Unauthorized Access (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>remshd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3565" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3565"/>
        <description>Unknown vulnerability in remshd daemon in HP-UX B.11.00, B.11.11, and B.11.23 while running in "Trusted Mode" allows remote attackers to gain unauthorized system access via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS-RUN or InternetSrvcs.INET-ENG-A-MAN (B.11.11) is installed">
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1119"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1118"/>
        </criteria>
        <criterion comment="Patch PHNE_33791 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1117"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1212" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX ftpd Remote Unauthorized Data Access (B.10.24)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.24">
          <criteria operator="AND" comment="700 Series OS Release 10.24">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.10.24" negate="false" test_ref="oval:org.mitre.oval:tst:1077"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 10.24">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.10.24" negate="false" test_ref="oval:org.mitre.oval:tst:1077"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_24394 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1076"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1237" version="1" class="vulnerability">
      <metadata>
        <title>Webproxy HTTP Request Smuggling (B.11.04)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00612828"/>
        <description>'An undisclosed vulnerability has been identified in Apache HTTP server versions prior to Apache 1.3.34 that may allow HTTP Request Splitting/Spoofing attacks, resulting in remote unauthorized access.'</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="VirtualvaultTS A.04.70 is installed without patch PHSS_34169 or later">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
            <criteria operator="AND" comment="700 Series OS Release 11.04">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.04">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
          </criteria>
          <criterion comment="VirtualvaultTS A.04.70 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1062"/>
          <criterion comment="Patch PHSS_34169 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:2341"/>
        </criteria>
        <criteria operator="AND" comment="VirtualvaultWS A.04.70 is installed without patch PHSS_34121 or later">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
            <criteria operator="AND" comment="700 Series OS Release 11.04">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.04">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
          </criteria>
          <criterion comment="VirtualvaultWS A.04.70 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1061"/>
          <criterion comment="Patch PHSS_34121 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1060"/>
        </criteria>
        <criteria operator="AND" comment="VirtualvaultTS A.04.60 is installed without patch PHSS_34170 or later">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
            <criteria operator="AND" comment="700 Series OS Release 11.04">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.04">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
          </criteria>
          <criterion comment="VirtualvaultTS A.04.60 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1059"/>
          <criterion comment="Patch PHSS_34170 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1058"/>
        </criteria>
        <criteria operator="AND" comment="VirtualvaultWS A.04.60 is installed without patch PHSS_34120 or later">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
            <criteria operator="AND" comment="700 Series OS Release 11.04">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.04">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
          </criteria>
          <criterion comment="VirtualvaultWS A.04.60 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1057"/>
          <criterion comment="Patch PHSS_34120 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1056"/>
        </criteria>
        <criteria operator="AND" comment="VirtualvaultTS A.04.50 is installed without patch PHSS_34171 or later">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
            <criteria operator="AND" comment="700 Series OS Release 11.04">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.04">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
          </criteria>
          <criterion comment="VirtualvaultTS A.04.50 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1055"/>
          <criterion comment="Patch PHSS_34171 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1054"/>
        </criteria>
        <criteria operator="AND" comment="VirtualvaultWS A.04.50 is installed without patch PHSS_34119 or later">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
            <criteria operator="AND" comment="700 Series OS Release 11.04">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.04">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
          </criteria>
          <criterion comment="VirtualvaultWS A.04.50 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1053"/>
          <criterion comment="Patch PHSS_34119 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1052"/>
        </criteria>
        <criteria operator="AND" comment="HP_Webproxy.HPWEB-PX-CORE A.02.10 is installed without patch PHSS_34203 or later">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
            <criteria operator="AND" comment="700 Series OS Release 11.04">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.04">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
          </criteria>
          <criterion comment="HP_Webproxy.HPWEB-PX-CORE A.02.10 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1051"/>
          <criterion comment="Patch PHSS_34203 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1050"/>
        </criteria>
        <criteria operator="AND" comment="HP_Webproxy.HPWEB-PX-CORE A.02.00 is installed without patch PHSS_34204 or later">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.04">
            <criteria operator="AND" comment="700 Series OS Release 11.04">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.04">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
            </criteria>
          </criteria>
          <criterion comment="HP_Webproxy.HPWEB-PX-CORE A.02.00 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1049"/>
          <criterion comment="Patch PHSS_34204 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1048"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1246" version="1" class="vulnerability">
      <metadata>
        <title>VirusVault CGI Byterange Request DoS</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2728" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2728"/>
        <description>The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumption) via an HTTP header with a large Range field.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.04">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
        </criteria>
        <criterion comment="VirusVault is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1040"/>
        <criterion comment="Patch PHSS_34123 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1039"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1262" version="1" class="vulnerability">
      <metadata>
        <title>zlib Compression Remote DoS Vulnerability (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>SecureShell</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2096" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2096"/>
        <description>zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a crafted compressed stream with an incomplete code description of a length greater than 1, which leads to a buffer overflow, as demonstrated using a crafted PNG file.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:55:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-01T09:08:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
        <criterion comment="Secure_Shell.SECURE_SHELL is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1033"/>
        <criterion comment="Secure_Shell.SECURE_SHELL with version less than A.04.20.005 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1032"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1265" version="1" class="vulnerability">
      <metadata>
        <title>WU-FTPD "glob-*" Remote DoS Vulnerability (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0256" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0256"/>
        <description>The wu_fnmatch function in wu_fnmatch.c for wu-fptd 2.6.1 and 2.6.2 allows remote attackers to cause a denial of service (CPU exhaustion by recursion) via a glob pattern with a large number of * (wildcard) characters, as demonstrated using the dir copmmand.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-04-06T06:39:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-12T05:16:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_34306 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1030"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1276" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX ftpd Remote Unauthorized Data Access (B.11.00)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
          <criteria operator="AND" comment="700 Series OS Release 11.00">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS-RUN or InternetSrvcs.INET-ENG-A-MAN (B.11.00) is installed">
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2376"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2375"/>
        </criteria>
        <criterion comment="Patch PHNE_23949 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1018"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1287" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla IDN heap overrun using soft-hyphens</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2871" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2871"/>
        <description>Buffer overflow in the International Domain Name (IDN) support in Mozilla Firefox 1.0.6 and earlier, and Netscape 8.0.3.3 and 7.2, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a hostname with all "soft" hyphens (character 0xAD), which is not properly handled by the NormalizeIDN call in nsStandardURL::BuildNormalizedSpec.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-27T08:49:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-12T08:59:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-01T09:08:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, 11.22, or 11.23">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.22">
            <criteria operator="AND" comment="700 Series OS Release 11.22">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.22" negate="false" test_ref="oval:org.mitre.oval:tst:1015"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.22">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.22" negate="false" test_ref="oval:org.mitre.oval:tst:1015"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
            <criteria operator="AND" comment="700 Series OS Release 11.23">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="Mozilla is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1014"/>
        <criterion comment="Mozilla v1.7.12 (1.7.12.0.00) or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1013"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1333" version="1" class="vulnerability">
      <metadata>
        <title>WU-FTPD "glob-*" Remote DoS Vulnerability (B.11.00)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0256" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0256"/>
        <description>The wu_fnmatch function in wu_fnmatch.c for wu-fptd 2.6.1 and 2.6.2 allows remote attackers to cause a denial of service (CPU exhaustion by recursion) via a glob pattern with a large number of * (wildcard) characters, as demonstrated using the dir copmmand.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-04-06T06:39:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-12T05:16:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
          <criteria operator="AND" comment="700 Series OS Release 11.00">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="INETSVCS-RUN without patch PHNE_34543 or later, OR WUFTP-26.INETSVCS-FTP with version less than B.11.11.01.006 is installed">
          <criteria operator="AND" comment="INETSVCS-RUN without patch PHNE_34543 or later">
            <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:981"/>
            <criterion comment="Patch PHNE_34543 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:980"/>
          </criteria>
          <criterion comment="WUFTP-26.INETSVCS-FTP with version less than B.11.11.01.006 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:979"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1345" version="1" class="vulnerability">
      <metadata>
        <title>Leaking GSSAPI Credentials Vulnerability (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>SecureShell</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2798" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2798"/>
        <description>sshd in OpenSSH before 4.2, when GSSAPIDelegateCredentials is enabled, allows GSSAPI credentials to be delegated to clients who log in using non-GSSAPI methods, which could cause those credentials to be exposed to untrusted users or hosts.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:55:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-01T09:08:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
        <criterion comment="Secure_Shell.SECURE_SHELL is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1033"/>
        <criterion comment="Secure_Shell.SECURE_SHELL with version less than A.04.20.005 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1032"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1346" version="1" class="vulnerability">
      <metadata>
        <title>Apache mod_ssl CRL off-by-one DoS</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1268" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1268"/>
        <description>Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to use a CRL, allows remote attackers to cause a denial of service (child process crash) via a CRL that causes a buffer overflow of one null byte.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, or 11.23">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
            <criteria operator="AND" comment="700 Series OS Release 11.23">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="hpuxwsAPACHE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2388"/>
        <criterion comment="hpuxwsAPACHE has a version greater than or equal (A|B).2.0.55.0" negate="true" test_ref="oval:org.mitre.oval:tst:2387"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1407" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX PMTUD Remote DoS (B.11.23-IPSEC)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1192" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1192"/>
        <description>Unknown vulnerability in HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23, when running TCP/IP on IPv4, allows remote attackers to cause a denial of service via certain packets, related to the PMTU, a different vulnerability than CVE-2004-1060.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-01T11:45:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.22">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.22" negate="false" test_ref="oval:org.mitre.oval:tst:1015"/>
        </criteria>
        <criterion comment="IPSec.IPSEC2-KRN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:966"/>
        <criteria operator="OR" comment="IPSec.IPSEC2-KRN version is under A.2.00.01 or TOUR version is under 3.0 or patch PHNE_32606 is not installed">
          <criterion comment="IPSec.IPSEC2-KRN with version less than A.2.00.01 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:965"/>
          <criterion comment="TOUR_PRODUCT.T-NET2-KRN with version less than A.03.00 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:964"/>
          <criterion comment="Patch PHNE_32606 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1441"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1409" version="1" class="vulnerability">
      <metadata>
        <title>PC Netlink 2.0 Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Solaris Management Console</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-4552" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4552"/>
        <description>The (1) slsmgr and (2) slsadmin programs in Sun Solaris PC NetLink 2.0 create temporary files insecurely, which allows local users to gain privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:56:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-01T09:08:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
        <criterion comment="the SUNWlzas package (for slsadmin) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:963"/>
        <criterion comment="Patch 121332-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:962"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1412" version="1" class="vulnerability">
      <metadata>
        <title>passwd Local DoS Vulnerability (B.11.00)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00619550"/>
        <description>'An undisclosed vulnerability has been identified in /sbin/passwd which could be exploited to create a Denial of Service condition..'</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-29T06:11:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-06T06:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
          <criteria operator="AND" comment="700 Series OS Release 11.00">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
        </criteria>
        <criterion comment="OS-Core.UX-CORE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:961"/>
        <criterion comment="Patch PHCO_33219 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:960"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1429" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX envd Local Execution of Privileged Code (B.11.00)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>envd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3564" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3564"/>
        <description>envd daemon in HP-UX B.11.00 through B.11.11 allows local users to obtain privileges via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
          <criteria operator="AND" comment="700 Series OS Release 11.00">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="OS-Core.CORE-ENG-A-MAN or OS-Core.UX-CORE (B.11.00) is installed">
          <criterion comment="OS-Core.CORE-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:946"/>
          <criterion comment="OS-Core.UX-CORE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:945"/>
        </criteria>
        <criterion comment="Patch PHCO_33989 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:944"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1439" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX ftpd Remote Unauthorized Data Access (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS-RUN or InternetSrvcs.INET-ENG-A-MAN (B.11.11) is installed">
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1119"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1118"/>
        </criteria>
        <criterion comment="Patch PHNE_23950 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:934"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1445" version="1" class="vulnerability">
      <metadata>
        <title>SMC TRACE HTTP Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Solaris Management Console</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3398" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3398"/>
        <description>The default configuration of the web server for the Solaris Management Console (SMC) in Solaris 8, 9, and 10 enables the HTTP TRACE method, which could allow remote attackers to obtain sensitive information such as cookies and authentication data from HTTP headers.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:56:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-01T09:08:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102016 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 111313-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:933"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102016 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 111314-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:932"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102016 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 116807-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:931"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102016 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 116808-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:930"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 102016 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 121308-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:929"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102016 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 121309-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:928"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1453" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX Shared Library Privilege Escalation Vulnerability (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0436" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0436"/>
        <description>Unspecified vulnerability in HP HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain privileges via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-30T07:20:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-01T09:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHCO_30402 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:924"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1459" version="1" class="vulnerability">
      <metadata>
        <title>HP-Samba DACL Remote Integer Overflow Vulnerability (CIFS A.01)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Samba</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1154" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1154"/>
        <description>Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a Samba request with a large number of security descriptors that triggers a heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-13T02:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-25T07:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, 11.22, or 11.23">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.22">
            <criteria operator="AND" comment="700 Series OS Release 11.22">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.22" negate="false" test_ref="oval:org.mitre.oval:tst:1015"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.22">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.22" negate="false" test_ref="oval:org.mitre.oval:tst:1015"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
            <criteria operator="AND" comment="700 Series OS Release 11.23">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="Any of the CIFS components has a version less than A.01.11.04">
          <criterion comment="CIFS-Server.CIFS-RUN with version less than A.01.11.04 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:920"/>
          <criterion comment="CIFS-Server.CIFS-UTIL with version less than A.01.11.04 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:919"/>
          <criterion comment="CIFS-Server.CIFS-ADMIN with version less than A.01.11.04 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:918"/>
          <criterion comment="CIFS-Server.CIFS-LIB with version less than A.01.11.04 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:917"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1461" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX xterm Privilege Escalation Vulnerability (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3779" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3779"/>
        <description>Unspecified vulnerability in xterm for HP-UX 11.00, 11.11, and 11.23 allows local users to gain privileges via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:55:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <modified date="2006-01-26T01:55:00.000-04:00" comment="Updated to CVE-2005-3779.  HP is so vague that it's not completely certain.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHSS_34102 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:915"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1470" version="1" class="vulnerability">
      <metadata>
        <title>Alternate ps Command Information Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Operating System</product>
        </affected>
        <reference source="MISC" ref_id="http://sunsolve9.sun.com/search/document.do?assetkey=1-26-102215-1&amp;amp;searchclause="/>
        <description>'An unspecified vulnerability in the \"/usr/ucb/ps\" command could allow unprivileged local users to see environment settings for processes of other users.  When the \'e\' flag is used, a low-privileged user can see environment variables and values for processes that belong to root and any other system users. NOTE: \"/usr/bin/ps\" is the default \'ps\' command for most users per the command search path and is not affected by this vulnerability'</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-28T09:02:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-06T06:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102215 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109023-05 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:910"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102215 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 120240-01 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:909"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102215 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109024-05 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:908"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102215 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 120239-01 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:907"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1472" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX ftpd Remote Unauthorized Data Access (B.10.20)</title>
        <affected family="unix">
          <platform>HP-UX 10</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.20">
          <criteria operator="AND" comment="700 Series OS Release 10.20">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.10.20" negate="false" test_ref="oval:org.mitre.oval:tst:906"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 10.20">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.10.20" negate="false" test_ref="oval:org.mitre.oval:tst:906"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS-RUN or InternetSrvcs.INET-ENG-A-MAN (B.10.20) is installed">
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:905"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:904"/>
        </criteria>
        <criterion comment="Patch PHNE_23948 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:903"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1496" version="1" class="vulnerability">
      <metadata>
        <title>Webproxy Integer Overflow in pcre_compile</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2491" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2491"/>
        <description>Integer overflow in pcre_compile.c in Perl Compatible Regular Expressions (PCRE) before 6.2, as used in multiple products such as Python, Ethereal, and PHP, allows attackers to execute arbitrary code via quantifier values in regular expressions, which leads to a heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.04">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
        </criteria>
        <criterion comment="Webproxy is installed" negate="false" test_ref="oval:org.mitre.oval:tst:890"/>
        <criterion comment="Patch PHSS_34163 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:889"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1526" version="1" class="vulnerability">
      <metadata>
        <title>VirusVault HTTP Request Smuggling</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2088" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2088"/>
        <description>The Apache HTTP server before 1.3.34, and 2.0.x before 2.0.55, when acting as an HTTP proxy, allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes Apache to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling."</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.04">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
        </criteria>
        <criterion comment="VirusVault is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1040"/>
        <criterion comment="Patch PHSS_34123 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1039"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1533" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX PMTUD Remote DoS (B.11.11-IPSEC)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1192" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1192"/>
        <description>Unknown vulnerability in HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23, when running TCP/IP on IPv4, allows remote attackers to cause a denial of service via certain packets, related to the PMTU, a different vulnerability than CVE-2004-1060.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-01T11:45:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criterion comment="IPSec.IPSEC2-KRN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:966"/>
        <criteria operator="OR" comment="IPSec.IPSEC2-KRN version is under A.2.00.01 or TOUR version is under 3.0">
          <criterion comment="IPSec.IPSEC2-KRN with version less than A.2.00.01 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:965"/>
          <criterion comment="TOUR_PRODUCT.T-NET2-KRN with version less than A.03.00 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:964"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1534" version="1" class="vulnerability">
      <metadata>
        <title>uucp/uustat Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0161" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0161"/>
        <description>Unspecified vulnerability in uucp in Sun Solaris 8 and 9 has unknown impact and attack vectors.  NOTE: due to the vagueness of the vendor advisory, it is not clear whether this is related to CVE-2004-0780.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:56:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <modified date="2006-01-17T01:07:00.000-04:00" comment="Updated reference to CVE-2006-0161, per Rob Hollis.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-02-01T09:08:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 101933 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 111570-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:878"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 101933 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 111571-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:877"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 101933 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 113322-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:876"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 101933 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 115880-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:875"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1542" version="1" class="vulnerability">
      <metadata>
        <title>zlib Compression Remote DoS Vulnerability (B.11.00/B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>SecureShell</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2096" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2096"/>
        <description>zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a crafted compressed stream with an incomplete code description of a length greater than 1, which leads to a buffer overflow, as demonstrated using a crafted PNG file.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:55:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-01T09:08:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00 or 11.11">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="Secure_Shell.SECURE_SHELL is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1033"/>
        <criterion comment="Secure_Shell.SECURE_SHELL with version less than A.04.20.004 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:869"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1552" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX PMTUD Remote DoS (B.11.22)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1192" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1192"/>
        <description>Unknown vulnerability in HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23, when running TCP/IP on IPv4, allows remote attackers to cause a denial of service via certain packets, related to the PMTU, a different vulnerability than CVE-2004-1060.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-01T11:45:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.22">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.22" negate="false" test_ref="oval:org.mitre.oval:tst:1015"/>
        </criteria>
        <criterion comment="Networking.NET2-KRN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1442"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1566" version="1" class="vulnerability">
      <metadata>
        <title>Leaking GSSAPI Credentials Vulnerability (B.11.00/B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>SecureShell</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2798" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2798"/>
        <description>sshd in OpenSSH before 4.2, when GSSAPIDelegateCredentials is enabled, allows GSSAPI credentials to be delegated to clients who log in using non-GSSAPI methods, which could cause those credentials to be exposed to untrusted users or hosts.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-11T12:55:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-12T09:18:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-01T09:08:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00 or 11.11">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="Secure_Shell.SECURE_SHELL is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1033"/>
        <criterion comment="Secure_Shell.SECURE_SHELL with version less than A.04.20.004 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:869"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1572" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX envd Local Execution of Privileged Code (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>envd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3564" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3564"/>
        <description>envd daemon in HP-UX B.11.00 through B.11.11 allows local users to obtain privileges via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="OS-Core.CORE-ENG-A-MAN or OS-Core.UX-CORE (B.11.11) is installed">
          <criterion comment="OS-Core.CORE-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:852"/>
          <criterion comment="OS-Core.UX-CORE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:851"/>
        </criteria>
        <criterion comment="Patch PHCO_33967 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:850"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1576" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX Trusted Mode remshd Remote Unauthorized Access (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>remshd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3565" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3565"/>
        <description>Unknown vulnerability in remshd daemon in HP-UX B.11.00, B.11.11, and B.11.23 while running in "Trusted Mode" allows remote attackers to gain unauthorized system access via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS2-RUN or InternetSrvcs.INET-ENG-A-MAN (B.11.23) is installed">
          <criterion comment="InternetSrvcs.INETSVCS2-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2472"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:849"/>
        </criteria>
        <criterion comment="Patch PHNE_33792 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:848"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1580" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos Command Execution Vulnerability rexec Daemon</title>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <product>X</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0769" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0769"/>
        <description>Unspecified vulnerability in in.rexecd in Solaris 10 allows local users to gain privileges on Kerberos systems via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-19T05:38:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-22T08:27:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="OR">
          <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 102186 criteria.">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
            <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
            <criterion comment="Patch 120329-02 or later installed (SPARC-10)" negate="true" test_ref="oval:org.mitre.oval:tst:845"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102186 criteria.">
            <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
            <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
            <criterion comment="Patch 120330-02 or later installed (SPARC-10)" negate="true" test_ref="oval:org.mitre.oval:tst:844"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Target is configured to reference pam_krb5" negate="false" test_ref="oval:org.mitre.oval:tst:843"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1582" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX SIM Hangs MS-IE Due to MS04-025 Changes</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3983" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3983"/>
        <description>Unknown vulnerability in the login page for HP Systems Insight Manager (SIM) 4.0 and 4.1, when accessed by Microsoft Internet Explorer with the MS04-025 patch, leads to a denial of service (browser hang). NOTE: although the advisory is vague, this issue does not appear to involve an attacker at all.  If not, then this issue is not a vulnerability.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-30T07:20:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-01T09:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criterion comment="SysMgmtServer.MX-PORTAL (C.04.00.00.00) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:841"/>
        <criterion comment="SysMgmtServer.MX-PORTAL (C.04.01.00.00) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:840"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1586" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX Shared Library Privilege Escalation Vulnerability (B.11.04)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0436" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0436"/>
        <description>Unspecified vulnerability in HP HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain privileges via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-30T07:20:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-01T09:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS-RUN, InternetSrvcs.INET-ENG-A-MAN, or VirtualVaultOS.VVOS-AUX-IA (B.11.04) is installed">
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1279"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1278"/>
          <criterion comment="VirtualVaultOS.VVOS-AUX-IA is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1277"/>
        </criteria>
        <criterion comment="Patch PHCO_32280 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:837"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1607" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX PMTUD Remote DoS (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1192" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1192"/>
        <description>Unknown vulnerability in HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23, when running TCP/IP on IPv4, allows remote attackers to cause a denial of service via certain packets, related to the PMTU, a different vulnerability than CVE-2004-1060.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-01T11:45:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criterion comment="Networking.NET2-KRN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1442"/>
        <criterion comment="Patch PHNE_33159 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:823"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1608" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 10 find on /proc panic DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0191" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0191"/>
        <description>Unspecified vulnerability in Sun Solaris 10 allows local users to cause a denial of service (null dereference) via unspecified vectors involving the use of the find command on the "/proc" filesystem. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this is related to CVE-2005-3250.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-12T11:25:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-25T07:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 10 (sparc) meets Sun Alert ID 102108 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118822-24 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:822"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102066 and 102108 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118844-24 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2409"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1617" version="1" class="vulnerability">
      <metadata>
        <title>XPM Image Decoder Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0782" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0782"/>
        <description>Integer overflow in pixbuf_create_from_xpm (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, allows remote attackers to execute arbitrary code via certain n_col and cpp values that enable a heap-based buffer overflow.  NOTE: this identifier is ONLY for gtk+.  It was incorrectly referenced in an advisory for a different issue (CVE-2004-0687).</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-21T04:03:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="GNOME 2.0 Solaris 8 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion comment="Patch 114644-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:817"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 8 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion comment="Patch 114645-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:816"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 9 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion comment="Patch 114686-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:815"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0.2 Solaris 9 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.2 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:814"/>
          <criterion comment="Patch 115738-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:813"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 9 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion comment="Patch 114687-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:812"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0.2 Solaris 9 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.2 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:814"/>
          <criterion comment="Patch 115739-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:811"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) with JDS release 2 meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="JDS release 2 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:810"/>
          <criterion comment="Patch 121092-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:809"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1618" version="1" class="vulnerability">
      <metadata>
        <title>pagedata Subsystem Local DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="MISC" ref_id="http://sunsolve9.sun.com/search/document.do?assetkey=1-26-102159-1&amp;amp;searchclause="/>
        <description>'An undisclosed vulnerability in the pagedata subsystem in /proc may allow a local unprivileged user to cause significant performance degradation and even panic the system.'</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-04T10:16:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102159 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 117350-33 or later installed (SPARC-8)" negate="true" test_ref="oval:org.mitre.oval:tst:808"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102159 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118558-22 or later installed (SPARC-9)" negate="true" test_ref="oval:org.mitre.oval:tst:807"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 102159 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118822-29 or later installed (SPARC-10)" negate="true" test_ref="oval:org.mitre.oval:tst:806"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102159 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 117351-33 or later installed (x86-8)" negate="true" test_ref="oval:org.mitre.oval:tst:805"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102159 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118559-22 or later installed (x86-9)" negate="true" test_ref="oval:org.mitre.oval:tst:804"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102159 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118844-29 or later installed (x86-10)" negate="true" test_ref="oval:org.mitre.oval:tst:803"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1628" version="1" class="vulnerability">
      <metadata>
        <title>CD Drive DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0901" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0901"/>
        <description>Unspecified vulnerability in the hsfs filesystem in Solaris 8, 9, and 10 allows unspecified attackers to cause a denial of service (panic) or execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-26T12:31:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102161 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109764-06 or later installed (SPARC-8)" negate="true" test_ref="oval:org.mitre.oval:tst:801"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102161 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 116047-03 or later installed (SPARC-9)" negate="true" test_ref="oval:org.mitre.oval:tst:800"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 102161 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 119596-03 or later installed (SPARC-10)" negate="true" test_ref="oval:org.mitre.oval:tst:799"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102161 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109765-06 or later installed (x86-8)" negate="true" test_ref="oval:org.mitre.oval:tst:798"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102161 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 121995-01 or later installed (x86-9)" negate="true" test_ref="oval:org.mitre.oval:tst:797"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102161 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118813-03 or later installed (x86-10)" negate="true" test_ref="oval:org.mitre.oval:tst:796"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1629" version="1" class="vulnerability">
      <metadata>
        <title>Webproxy HTTP Request Smuggling</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2088" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2088"/>
        <description>The Apache HTTP server before 1.3.34, and 2.0.x before 2.0.55, when acting as an HTTP proxy, allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes Apache to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling."</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.04">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
        </criteria>
        <criterion comment="Webproxy is installed" negate="false" test_ref="oval:org.mitre.oval:tst:890"/>
        <criterion comment="Patch PHSS_34163 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:889"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1636" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX wuftpd Privilege Escalation Vulnerability (B.11.22)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0148" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0148"/>
        <description>wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home directory, which causes wu-ftpd to use the root directory instead.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-30T07:20:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-01T09:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.22">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.22" negate="false" test_ref="oval:org.mitre.oval:tst:1015"/>
        </criteria>
        <criterion comment="InternetSrvcs.INETSVCS2-RUN (B.11.22) is installed" negate="false" test_ref="oval:org.mitre.oval:tst:795"/>
        <criterion comment="Patch PHNE_29462 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:794"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1637" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX wuftpd Privilege Escalation Vulnerability (B.11.00)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0148" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0148"/>
        <description>wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home directory, which causes wu-ftpd to use the root directory instead.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-30T07:20:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-02-01T09:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
          <criteria operator="AND" comment="700 Series OS Release 11.00">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
        </criteria>
        <criterion comment="WUFTP-26.INETSVCS-FTP with version less than B.11.00.01.004 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1124"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1659" version="1" class="vulnerability">
      <metadata>
        <title>VirusVault Integer Overflow in pcre_compile</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2491" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2491"/>
        <description>Integer overflow in pcre_compile.c in Perl Compatible Regular Expressions (PCRE) before 6.2, as used in multiple products such as Python, Ethereal, and PHP, allows attackers to execute arbitrary code via quantifier values in regular expressions, which leads to a heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.04">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
        </criteria>
        <criterion comment="VirusVault is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1040"/>
        <criterion comment="Patch PHSS_34123 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1039"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1660" version="1" class="vulnerability">
      <metadata>
        <title>passwd Local DoS Vulnerability (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00619550"/>
        <description>An undisclosed vulnerability has been identified in /sbin/passwd which could be exploited to create a Denial of Service condition..</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-29T06:11:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-06T06:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criterion comment="OS-Core.UX-CORE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:961"/>
        <criterion comment="Patch PHCO_33214 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:788"/>
        <criterion comment="Patch PHCO_33215 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:787"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1689" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail setjmp longjmp bo (Red Hat Internal)</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <platform>Red Hat Enterprise Linux 3</platform>
          <platform>Red Hat Enterprise Linux 4</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0058" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0058"/>
        <description>Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a way that causes the setjmp and longjmp function calls to be interrupted and modify unexpected memory locations.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-27T09:51:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-06T06:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criterion comment="sendmail before 8.12.x is installed" negate="false" test_ref="oval:org.mitre.oval:tst:774"/>
        <criterion comment="sendmail 8.12.x before 8.12.11 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:773"/>
        <criterion comment="sendmail 8.13.x before 8.13.6 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:772"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1690" version="1" class="vulnerability">
      <metadata>
        <title>passwd Local DoS Vulnerability (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00619550"/>
        <description>An undisclosed vulnerability has been identified in /sbin/passwd which could be exploited to create a Denial of Service condition..</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-29T06:11:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-06T06:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
        <criterion comment="OS-Core.UX2-CORE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:771"/>
        <criterion comment="Patch PHCO_32149 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:770"/>
        <criterion comment="Patch PHCO_32926 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:769"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1697" version="1" class="vulnerability">
      <metadata>
        <title>X.Org Privilege Escalation Vulnerability in X11R6.9, X11R7.0</title>
        <affected family="unix">
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0745" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0745"/>
        <description>X.Org server (xorg-server) 1.0.0 and later, X11R6.9.0, and X11R7.0 inadvertently treats the address of the geteuid function as if it is the return value of a call to geteuid, which allows local users to bypass intended restrictions and (1) execute arbitrary code via the -modulepath command line option or (2) overwrite arbitrary files via -logfile.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-21T04:03:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
        <criteria operator="AND" comment="Patch 118966-14 through 118966-16 is installed.">
          <criterion comment="Patch 118966-14 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:765"/>
          <criterion comment="Patch 118966-17 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:764"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1714" version="1" class="vulnerability">
      <metadata>
        <title>VirusVault Off-by-One Error in mod_ssl CRL</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1268" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1268"/>
        <description>Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to use a CRL, allows remote attackers to cause a denial of service (child process crash) via a CRL that causes a buffer overflow of one null byte.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.04">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
        </criteria>
        <criterion comment="VirusVault is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1040"/>
        <criterion comment="Patch PHSS_34123 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1039"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1727" version="1" class="vulnerability">
      <metadata>
        <title>Webproxy CGI Byterange Request DoS</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2728" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2728"/>
        <description>The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumption) via an HTTP header with a large Range field.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.04">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
        </criteria>
        <criterion comment="Webproxy is installed" negate="false" test_ref="oval:org.mitre.oval:tst:890"/>
        <criterion comment="Patch PHSS_34163 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:889"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1747" version="1" class="vulnerability">
      <metadata>
        <title>Webproxy Off-by-One Error in mod_ssl CRL</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1268" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1268"/>
        <description>Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to use a CRL, allows remote attackers to cause a denial of service (child process crash) via a CRL that causes a buffer overflow of one null byte.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="AND" comment="700 Series OS Release 11.04">
          <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
          <criterion comment="HP Release B.11.04" negate="false" test_ref="oval:org.mitre.oval:tst:1276"/>
        </criteria>
        <criterion comment="Webproxy is installed" negate="false" test_ref="oval:org.mitre.oval:tst:890"/>
        <criterion comment="Patch PHSS_34163 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:889"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1754" version="1" class="vulnerability">
      <metadata>
        <title>"su" Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>LDAP</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00637553"/>
        <description>'An undisclosed vulnerability has been identified in su when used with LDAP.  The potential vulnerability could be exploited by a local authorized user to gain unauthorized access.'</description>
        <oval_repository>
          <dates>
            <submitted date="2006-04-06T06:39:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-12T05:16:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criterion comment="Patch PHCO_34545 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:737"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1762" version="1" class="vulnerability">
      <metadata>
        <title>WU-FTPD "glob-*" Remote DoS Vulnerability (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0256" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0256"/>
        <description>The wu_fnmatch function in wu_fnmatch.c for wu-fptd 2.6.1 and 2.6.2 allows remote attackers to cause a denial of service (CPU exhaustion by recursion) via a glob pattern with a large number of * (wildcard) characters, as demonstrated using the dir copmmand.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-04-06T06:39:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-12T05:16:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="INETSVCS-RUN without patch PHNE_34544 or later, OR WUFTP-26.INETSVCS-FTP with version less than B.11.11.01.008 is installed">
          <criteria operator="AND" comment="INETSVCS-RUN without patch PHNE_34544 or later">
            <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:981"/>
            <criterion comment="Patch PHNE_34544 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:736"/>
          </criteria>
          <criterion comment="WUFTP-26.INETSVCS-FTP with version less than B.11.11.01.008 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:735"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1786" version="1" class="vulnerability">
      <metadata>
        <title>XPM Image Decoder Malicious Color String Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0783" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0783"/>
        <description>Stack-based buffer overflow in xpm_extract_color (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, may allow remote attackers to execute arbitrary code via a certain color string.  NOTE: this identifier is ONLY for gtk+.  It was incorrectly referenced in an advisory for a different issue (CVE-2004-0688).</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-21T04:03:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="GNOME 2.0 Solaris 8 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion comment="Patch 114644-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:817"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 8 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion comment="Patch 114645-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:816"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 9 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion comment="Patch 114686-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:815"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0.2 Solaris 9 (SPARC) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Gnome 2.0.2 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:814"/>
          <criterion comment="Patch 115738-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:813"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0 Solaris 9 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.0 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:818"/>
          <criterion comment="Patch 114687-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:812"/>
        </criteria>
        <criteria operator="AND" comment="GNOME 2.0.2 Solaris 9 (x86) meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Gnome 2.0.2 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:814"/>
          <criterion comment="Patch 115739-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:811"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) with JDS release 2 meets Sun Alert ID 101776 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="JDS release 2 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:810"/>
          <criterion comment="Patch 121092-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:809"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1840" version="1" class="vulnerability">
      <metadata>
        <title>LDAP rootDN Password Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>LDAP</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-1782" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1782"/>
        <description>Unspecified vulnerability in Solaris 8 and 9 allows local users to obtain the LDAP Directory Server root Distinguished Name (rootDN) password when a privileged user (1) runs idsconfig; or "insecurely" runs LDAP2 commands with the -w option, including (2) ldapadd, (3) ldapdelete, (4) ldapmodify, (5) ldapmodrdn, and (6) ldapsearch.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-04-14T06:41:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-19T10:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-10T08:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102113 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 108993-14 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:700"/>
          <criterion comment="Patch 108993-51 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:699"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102113 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 115677-02 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:698"/>
          <criterion comment="Patch 121321-01 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:697"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102113 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 108994-14 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:696"/>
          <criterion comment="Patch 108994-51 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:695"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102113 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 115678-02 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:694"/>
          <criterion comment="Patch 121322-01 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:693"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2002" version="2" class="vulnerability">
      <metadata>
        <title>Multiple Buffer Overflows in Kerberos 5 (krb5_aname_to_localname)</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Solaris Enterprise Authentication Mechanism (SEAM)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0523" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0523"/>
        <description>Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-11T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed two unknown tests for kerberos configuration to Solaris text file contents tests">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-07-03T12:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:12.225-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Kerberos 5 installed" negate="false" test_ref="oval:org.mitre.oval:tst:648"/>
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 112908-16 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:647"/>
          <criterion comment="Patch 112536-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:646"/>
          <criteria operator="AND" comment="Patches 112237-11 and 112390-09 or greater installed" negate="true">
            <criterion comment="Patch 112237-11 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:645"/>
            <criterion comment="Patch 112390-09 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:644"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
          <criterion comment="/etc/krb5/krb5.conf is configured with explicit or rules-based mapping" negate="false" test_ref="oval:org.mitre.oval:tst:643"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2025" version="1" class="vulnerability">
      <metadata>
        <title>System V login Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>login</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0797" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0797"/>
        <description>Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-29T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7 or 8 installed">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
        </criteria>
        <criterion comment="Patch 112300-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:635"/>
        <criterion comment="Patch 111085-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:634"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2536" version="2" class="vulnerability">
      <metadata>
        <title>Kerberos 5 KDC Heap Corruption Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0082" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0082"/>
        <description>The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes the KDC to corrupt its heap (aka "buffer underrun").</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-07-03T12:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:18.623-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <notes>
        <note>Vulnerability exists in standard Solaris kerberos and SEAM.  This definition only covers Solaris kerberos</note>
      </notes>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criteria operator="OR" comment="Kerberos v5 (any SUNWkrbr/SUNWkrbu/SUNWkrbux) installed">
            <criterion comment="Kerberos v5 - Root (SUNWkrbr) installed" negate="false" test_ref="oval:org.mitre.oval:tst:527"/>
            <criterion comment="Kerberos v5 - Usr (SUNWkrbu/SUNWkrbux) installed" negate="false" test_ref="oval:org.mitre.oval:tst:526"/>
          </criteria>
          <criteria operator="AND" comment="Patches 112237-09 and 112390-08 or later installed" negate="true">
            <criterion comment="Patch 112237-09 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:525"/>
            <criterion comment="Patch 112390-08 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:524"/>
          </criteria>
          <criteria operator="AND" comment="Patches 112925-03,112923-03,112921-02, and 112908-10 or later installed" negate="true">
            <criterion comment="Patch 112925-03 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:523"/>
            <criterion comment="Patch 112923-03 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:522"/>
            <criterion comment="Patch 112921-02 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:521"/>
            <criterion comment="Patch 112908-10 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:520"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4047" version="2" class="vulnerability">
      <metadata>
        <title>Shell Redirect Symlink Attack Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <product>Bourne Shell (sh)</product>
          <product>Bourne Again Shell (bash)</product>
          <product>TENEX C Shell (tcsh)</product>
          <product>C Shell (csh)</product>
          <product>Korn Shell (ksh)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2000-1134" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-1134"/>
        <description>Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing &lt;&lt;redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
            <modified date="2006-06-13T03:18:00.000-04:00" comment="Added Sun Solaris 8 to list of platforms in Affected metadata.">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-06-14T07:41:00.000-04:00">INTERIM</status_change>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-09-27T12:29:23.796-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7 or 8 installed">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
        </criteria>
        <criteria operator="AND" comment="Patches 108574-03, 108162-04, and 108416-02 or later installed" negate="true">
          <criterion comment="Patch 108574-03 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:358"/>
          <criterion comment="Patch 108162-04 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:357"/>
          <criterion comment="Patch 108416-02 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:356"/>
        </criteria>
        <criteria operator="AND" comment="Patches 110943-01, 110898-02, and 109324-03 or later installed" negate="true">
          <criterion comment="Patch 110943-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:355"/>
          <criterion comment="Patch 110898-02 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:354"/>
          <criterion comment="Patch 109324-03 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:353"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:42" version="2" class="vulnerability">
      <metadata>
        <title>Solaris 7 RPC xdr_array Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>libnsl</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0391" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0391"/>
        <description>Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on SunRPC including dietlibc, allows remote attackers to execute arbitrary code by passing a large number of arguments to xdr_array through RPC services such as rpc.cmsd and dmispd.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-02T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-07-03T12:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:24.285-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criteria operator="OR" comment="rpc.cmsd or dmispd exist">
            <criterion comment="File rpc.cmsd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3140"/>
            <criterion comment="File dmispd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3139"/>
          </criteria>
          <criteria operator="AND" comment="Patches 106942-22 and 108451-06" negate="true">
            <criterion comment="Patch 106942-22 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:3026"/>
            <criterion comment="Patch 108541-06 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:3025"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="rpc.cmsd enabled OR dmispd running">
            <criteria operator="AND" comment="rpc.cmsd enabled">
              <criterion comment="" negate="false" test_ref="oval:org.mitre.oval:tst:3136"/>
              <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
              <criteria operator="OR" comment="File rpc.cmsd executable">
                <criterion comment="File rpc.cmsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3134"/>
                <criterion comment="File rpc.cmsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3133"/>
                <criterion comment="File rpc.cmsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3132"/>
              </criteria>
            </criteria>
            <criterion comment="dmispd running" negate="false" test_ref="oval:org.mitre.oval:tst:3131"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4430" version="2" class="vulnerability">
      <metadata>
        <title>Kerberos 5 KDC Buffer Underrun in Principle Name Handling</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Solaris Enterprise Authentication Mechanism (SEAM)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0082" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0082"/>
        <description>The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes the KDC to corrupt its heap (aka "buffer underrun").</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-07-03T12:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:26.851-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <notes>
        <note>Vulnerability exists in standard Solaris kerberos and SEAM.  This definition only covers SEAM</note>
      </notes>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1161"/>
        <criteria operator="AND" comment="Patches 112536-04 and 110057-07 or later installed" negate="true">
          <criterion comment="Patch 112536-04 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:325"/>
          <criterion comment="Patch 110057-07 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:324"/>
        </criteria>
        <criterion comment="Patch 110060-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:323"/>
        <criterion comment="Patch 116462-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:322"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4728" version="2" class="vulnerability">
      <metadata>
        <title>SunRPC xdr_array Function Integer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Sun RPC</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0391" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0391"/>
        <description>Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on SunRPC including dietlibc, allows remote attackers to execute arbitrary code by passing a large number of arguments to xdr_array through RPC services such as rpc.cmsd and dmispd.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-07-03T12:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:27.565-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <notes>
        <note>Specific applications using this library are not tested for because Suns advisory only provides a sample of known vulnerable applications and states that they are still investigating.</note>
      </notes>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="AND" comment="Patches 106942-22 and 108451-06 or later installed" negate="true">
          <criterion comment="Patch 106942-22 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:3026"/>
          <criterion comment="Patch 108451-06 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:310"/>
        </criteria>
        <criteria operator="AND" comment="Patches 108827-30 and 108901-06" negate="true">
          <criterion comment="Patch 108827-30 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:3138"/>
          <criterion comment="Patch 108901-06 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:3137"/>
        </criteria>
        <criteria operator="AND" comment="Patches 113319-01 and 112233-02 or later installed" negate="true">
          <criterion comment="Patch 113319-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:309"/>
          <criterion comment="Patch 112233-02 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:308"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:598" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX xterm Local Unauthorized Access due to Bad Patch</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>remshd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3779" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3779"/>
        <description>Unspecified vulnerability in xterm for HP-UX 11.00, 11.11, and 11.23 allows local users to gain privileges via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, or 11.23">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
            <criteria operator="AND" comment="700 Series OS Release 11.23">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="X11.X11-RUN-CL is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2510"/>
        <criteria operator="OR" comment="A vulnerable patch to xterm is installed">
          <criterion comment="Patch PHSS_32109 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2509"/>
          <criterion comment="Patch PHSS_30791 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2508"/>
          <criterion comment="Patch PHSS_33589 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2507"/>
          <criterion comment="Patch PHSS_31833 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2506"/>
          <criterion comment="Patch PHSS_32366 or later is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2505"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:642" version="1" class="vulnerability">
      <metadata>
        <title>HP-Samba DACL Remote Integer Overflow Vulnerability (CIFS A.02)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Samba</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1154" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1154"/>
        <description>Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a Samba request with a large number of security descriptors that triggers a heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-13T02:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-25T07:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="An HPUX 11.11 or 11.23 is installed">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
            <criteria operator="AND" comment="700 Series OS Release 11.23">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="Any of the CIFS components has a version equal to A.02.01">
          <criterion comment="CIFS-Server.CIFS-RUN with version equal A.02.01 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2481"/>
          <criterion comment="CIFS-Server.CIFS-UTIL with version equal A.02.01 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2480"/>
          <criterion comment="CIFS-Server.CIFS-ADMIN with version equal A.02.01 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2479"/>
          <criterion comment="CIFS-Server.CIFS-LIB with version equal A.02.01 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2478"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:702" version="1" class="vulnerability">
      <metadata>
        <title>Solaris Privilege Escalation/DoS Vulnerability (6293270)</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0190" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0190"/>
        <description>Unspecified vulnerability in Sun Solaris 9 and 10 for the x86 platform allows local users to gain privileges or cause a denial of service (panic) via unspecified vectors, possibly involving functions from the mm driver.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-01-12T11:25:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-01-25T07:30:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-02-22T08:27:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-03-09T12:19:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102066 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criteria operator="OR" comment="Contributing factors for Solaris 9, Sun Alert ID 102066 criteria.">
            <criterion comment="Patch 112234-11 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2413"/>
            <criterion comment="Patch 112234-12 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2412"/>
            <criterion comment="Patch 117172-16 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:2411"/>
          </criteria>
          <criterion comment="Patch 118559-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2410"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102066 and 102108 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118844-24 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2409"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:735" version="1" class="vulnerability">
      <metadata>
        <title>Apache Integer Overflow in pcre_compile.c</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2491" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2491"/>
        <description>Integer overflow in pcre_compile.c in Perl Compatible Regular Expressions (PCRE) before 6.2, as used in multiple products such as Python, Ethereal, and PHP, allows attackers to execute arbitrary code via quantifier values in regular expressions, which leads to a heap-based buffer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, or 11.23">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
            <criteria operator="AND" comment="700 Series OS Release 11.23">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="hpuxwsAPACHE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2388"/>
        <criterion comment="hpuxwsAPACHE has a version greater than or equal (A|B).2.0.55.0" negate="true" test_ref="oval:org.mitre.oval:tst:2387"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:760" version="1" class="vulnerability">
      <metadata>
        <title>Apache HTTP Byte-range DoS Vulnerability</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2728" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2728"/>
        <description>The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumption) via an HTTP header with a large Range field.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, or 11.23">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
            <criteria operator="AND" comment="700 Series OS Release 11.23">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="hpuxwsAPACHE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2388"/>
        <criterion comment="hpuxwsAPACHE has a version greater than or equal (A|B).2.0.55.0" negate="true" test_ref="oval:org.mitre.oval:tst:2387"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:766" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX Trusted Mode remshd Remote Unauthorized Access (B.11.00)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>remshd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3565" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3565"/>
        <description>Unknown vulnerability in remshd daemon in HP-UX B.11.00, B.11.11, and B.11.23 while running in "Trusted Mode" allows remote attackers to gain unauthorized system access via unknown attack vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
          <criteria operator="AND" comment="700 Series OS Release 11.00">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
        </criteria>
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS-RUN or InternetSrvcs.INET-ENG-A-MAN (B.11.00) is installed">
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2376"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2375"/>
        </criteria>
        <criterion comment="Patch PHNE_33790 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:2374"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:767" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX ftpd Remote Unauthorized Data Access (B.10.01, B.10.10)</title>
        <affected family="unix">
          <platform>HP-UX 10</platform>
          <product>ftpd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3296"/>
        <description>The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="InternetSrvcs.INETSVCS-RUN or InternetSrvcs.INET-ENG-A-MAN (B.10.20) is installed">
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2373"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2372"/>
          <criterion comment="InternetSrvcs.INETSVCS-RUN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2371"/>
          <criterion comment="InternetSrvcs.INET-ENG-A-MAN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2370"/>
        </criteria>
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.01 or 10.10">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.01">
            <criteria operator="AND" comment="700 Series OS Release 10.01">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.10.01" negate="false" test_ref="oval:org.mitre.oval:tst:2369"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 10.01">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.10.01" negate="false" test_ref="oval:org.mitre.oval:tst:2369"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 10.10">
            <criteria operator="AND" comment="700 Series OS Release 10.10">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.10.10" negate="false" test_ref="oval:org.mitre.oval:tst:2368"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 10.10">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.10.10" negate="false" test_ref="oval:org.mitre.oval:tst:2368"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="Patch PHNE_23947 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:2367"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:772" version="1" class="vulnerability">
      <metadata>
        <title>usermod Recursive Ownership Error (B.11.00)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00614838"/>
        <description>'A security flaw in some versions of the HP-UX usermod command can result in recursively changing the ownership of all directories and files under a user\'s home directory.  Specifically, executing # usermod -d &lt;old home dir> -u &lt;new gid> -m &lt;username> or # usermod -d &lt;old home dir> -u &lt;new or old gid> -m &lt;username> incorrectly changes ownership recursively to &lt;username>.  If the home directory is \'/\', this action will render the system inoperable.'</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
          <criteria operator="AND" comment="700 Series OS Release 11.00">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.00">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:785" version="1" class="vulnerability">
      <metadata>
        <title>usermod Recursive Ownership Error (B.11.11)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="MISC" ref_id="http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00614838"/>
        <description>A security flaw in some versions of the HP-UX usermod command can result in recursively changing the ownership of all directories and files under a user's home directory.  Specifically, executing	# usermod -d &lt;old home dir> -u &lt;new gid> -m &lt;username> or	# usermod -d &lt;old home dir> -u &lt;new or old gid> -m &lt;username> incorrectly changes ownership recursively to &lt;username>.  If the home directory is '/', this action will render the system inoperable.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-03-18T07:24:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-22T11:10:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:31:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
          <criteria operator="AND" comment="700 Series OS Release 11.11">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.11">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
          </criteria>
        </criteria>
        <criteria operator="AND" comment="Patch PHCO_29269, PHCO_30275, or PHCO_32181 has been installed">
          <criterion comment="Patch PHCO_29269 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2344"/>
          <criterion comment="Patch PHCO_30275 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2343"/>
          <criterion comment="Patch PHCO_32181 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2342"/>
        </criteria>
        <criterion comment="Patch PHSS_34169 or subsequent is installed" negate="true" test_ref="oval:org.mitre.oval:tst:2341"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:840" version="1" class="vulnerability">
      <metadata>
        <title>Apache HTTP Request Smuggling</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2088" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2088"/>
        <description>The Apache HTTP server before 1.3.34, and 2.0.x before 2.0.55, when acting as an HTTP proxy, allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes Apache to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling."</description>
        <oval_repository>
          <dates>
            <submitted date="2005-11-30T12:00:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2005-12-20T11:03:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-01-04T08:04:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-01-25T07:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00, 11.11, or 11.23">
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.11">
            <criteria operator="AND" comment="700 Series OS Release 11.11">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.11">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.11" negate="false" test_ref="oval:org.mitre.oval:tst:2514"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.00">
            <criteria operator="AND" comment="700 Series OS Release 11.00">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.00">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.00" negate="false" test_ref="oval:org.mitre.oval:tst:2512"/>
            </criteria>
          </criteria>
          <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
            <criteria operator="AND" comment="700 Series OS Release 11.23">
              <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
            <criteria operator="AND" comment="800 Series OS Release 11.23">
              <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
              <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
            </criteria>
          </criteria>
        </criteria>
        <criterion comment="hpuxwsAPACHE is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2388"/>
        <criterion comment="hpuxwsAPACHE has a version greater than or equal (A|B).2.0.55.0" negate="true" test_ref="oval:org.mitre.oval:tst:2387"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:881" version="1" class="vulnerability">
      <metadata>
        <title>Bourne Shell Local-DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <platform>Sun Solaris 10</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-1780" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1780"/>
        <description>The Bourne shell (sh) in Solaris 8, 9, and 10 allows local users to cause a denial of service (sh crash) via an unspecified attack vector that causes sh processes to crash during creation of temporary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-04-14T06:41:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-04-19T10:08:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-05-10T08:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-31T09:45:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="OR">
        <criteria operator="AND" comment="Solaris 8 (SPARC) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 109324-09 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1520"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (SPARC) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 118535-03 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1519"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (SPARC) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="sparc architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2465"/>
          <criterion comment="Patch 121004-01 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1518"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 8 (x86) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 109325-09 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1517"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 9 (x86) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 118536-03 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1516"/>
        </criteria>
        <criteria operator="AND" comment="Solaris 10 (x86) meets Sun Alert ID 102282 criteria.">
          <criterion comment="Solaris 10 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:2459"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:2463"/>
          <criterion comment="Patch 121005-01 is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1515"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:9" version="2" class="vulnerability">
      <metadata>
        <title>Solaris 8 RPC xdr_array Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>libnsl</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0391" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0391"/>
        <description>Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on SunRPC including dietlibc, allows remote attackers to execute arbitrary code by passing a large number of arguments to xdr_array through RPC services such as rpc.cmsd and dmispd.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-28T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2006-07-03T12:56:00.000-04:00" comment="Added negate=true attribute to criteria sub-block to fix conversion error from OVAL 4.2 to OVAL 5.0">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2006-07-03T12:56:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-09-27T12:29:40.134-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criteria operator="OR" comment="rpc.cmsd or dmispd exist">
            <criterion comment="File rpc.cmsd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3140"/>
            <criterion comment="File dmispd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3139"/>
          </criteria>
          <criteria operator="AND" comment="Patches 108827-30 and 108901-06" negate="true">
            <criterion comment="Patch 108827-30 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:3138"/>
            <criterion comment="Patch 108901-06 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:3137"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="OR" comment="rpc.cmsd enabled OR dmispd running">
            <criteria operator="AND" comment="rpc.cmsd enabled">
              <criterion comment="" negate="false" test_ref="oval:org.mitre.oval:tst:3136"/>
              <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
              <criteria operator="OR" comment="File rpc.cmsd executable">
                <criterion comment="File rpc.cmsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3134"/>
                <criterion comment="File rpc.cmsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3133"/>
                <criterion comment="File rpc.cmsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3132"/>
              </criteria>
            </criteria>
            <criterion comment="dmispd running" negate="false" test_ref="oval:org.mitre.oval:tst:3131"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:935" version="1" class="vulnerability">
      <metadata>
        <title>HP-UX PMTUD Remote DoS (B.11.23)</title>
        <affected family="unix">
          <platform>HP-UX 11</platform>
          <product>Operating System</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1192" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1192"/>
        <description>Unknown vulnerability in HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23, when running TCP/IP on IPv4, allows remote attackers to cause a denial of service via certain packets, related to the PMTU, a different vulnerability than CVE-2004-1060.</description>
        <oval_repository>
          <dates>
            <submitted date="2006-02-01T11:45:00.000-04:00">
              <contributor organization="ThreatGuard, Inc.">Robert L. Hollis</contributor>
            </submitted>
            <status_change date="2006-03-09T12:19:00.000-04:00">DRAFT</status_change>
            <status_change date="2006-04-06T06:30:00.000-04:00">INTERIM</status_change>
            <status_change date="2006-05-03T10:06:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="700 Series or 800 Series OS Release 11.23">
          <criteria operator="AND" comment="700 Series OS Release 11.23">
            <criterion comment="700-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2515"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
          <criteria operator="AND" comment="800 Series OS Release 11.23">
            <criterion comment="800-series HP" negate="false" test_ref="oval:org.mitre.oval:tst:2513"/>
            <criterion comment="HP Release B.11.23" negate="false" test_ref="oval:org.mitre.oval:tst:2511"/>
          </criteria>
        </criteria>
        <criterion comment="Networking.NET2-KRN is installed" negate="false" test_ref="oval:org.mitre.oval:tst:1442"/>
        <criterion comment="Patch PHNE_32606 or later is installed" negate="true" test_ref="oval:org.mitre.oval:tst:1441"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:10" version="1" class="vulnerability">
      <metadata>
        <title>Heap Overflow in Solaris 8 xlock</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>xlock</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0652" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0652"/>
        <description>Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a long (1) XFILESEARCHPATH or (2) XUSERFILESEARCHPATH environmental variable.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File xlock exists" negate="false" test_ref="oval:org.mitre.oval:tst:3130"/>
          <criterion comment="Patch 108652-38 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3129"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File xlock SUID and executable">
            <criterion comment="File xlock SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3128"/>
            <criterion comment="File xlock SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3127"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:102" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 rpc.yppasswdd Buffer Overrun Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>rpc.yppasswdd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0779" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0779"/>
        <description>Buffer overflow in rpc.yppasswdd (yppasswd server) in Solaris 2.6, 7 and 8 allows remote attackers to gain root access via a long username.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File rpc.yppasswdd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3006"/>
          <criterion comment="Patch 111590-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2943"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="rpc.yppasswdd running" negate="false" test_ref="oval:org.mitre.oval:tst:3004"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1048" version="1" class="vulnerability">
      <metadata>
        <title>SNMP Trap Handling Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <product>snmpdx</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0012" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0012"/>
        <description>Vulnerabilities in a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via SNMPv1 trap handling, as demonstrated by the PROTOS c06-SNMPv1 test suite.  NOTE: It is highly likely that this candidate will be SPLIT into multiple candidates, one or more for each vendor.  This and other SNMP-related candidates will be updated when more accurate information is available.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7 or 8 installed">
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          </criteria>
          <criterion comment="Solstice Enterprise Agents SNMP (SUNWsasnm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1243"/>
          <criterion comment="Patch 107709-18 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1242"/>
          <criterion comment="Patch 108869-15 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1241"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="snmpdx running" negate="false" test_ref="oval:org.mitre.oval:tst:3124"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1049" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat OpenSSL Kerberos Handshake Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0112" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0112"/>
        <description>The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="openssl version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1484"/>
        <criterion comment="openssl-devel version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1483"/>
        <criterion comment="openssl-perl version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1482"/>
        <criterion comment="openssl096 version is less than 0.9.6-25.9" negate="false" test_ref="oval:org.mitre.oval:tst:1481"/>
        <criterion comment="openssl096b version is less than 0.9.6b-15" negate="false" test_ref="oval:org.mitre.oval:tst:1480"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1099" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 9 CDE ToolTalk Database Null Write Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0677" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0677"/>
        <description>CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-15T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T12:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-01-11T12:00:00.000-04:00" comment="modified sat-6 - Changed test to pattern match and added check for 64bit version">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="modified sat-6 - Changed regular expression test to properly check for 64bit package">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-01-24T02:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Toolktalk (SUNWtltk/SUNWtltkx) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1169"/>
          <criterion comment="Patch 112808-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1168"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:11" version="1" class="vulnerability">
      <metadata>
        <title>String Format Vulnerability in Solaris 8 snmpdx</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>snmpdx</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0796" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0796"/>
        <description>Format string vulnerability in the logging component of snmpdx for Solaris 5.6 through 8 allows remote attackers to gain root privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-25T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File snmpdx exists" negate="false" test_ref="oval:org.mitre.oval:tst:3126"/>
          <criterion comment="Patch 108869-16 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3125"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="snmpdx running" negate="false" test_ref="oval:org.mitre.oval:tst:3124"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1127" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Overflows in uucp</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>uucp</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1359" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1359"/>
        <description>Multiple buffer overflows in uucp for Sun Solaris 2.6, 7, 8, and 9 allow local users to execute arbitrary code as the uucp user.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-08-22T04:00:00.000-04:00" comment="Product set to uucp; was mistakenly .NET framework">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Networking UUCP Utilities - Usr (SUNWbnuu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1140"/>
        <criterion comment="Patch 106952-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1139"/>
        <criterion comment="Patch 111570-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1138"/>
        <criterion comment="Patch 113322-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1137"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:114" version="1" class="vulnerability">
      <metadata>
        <title>String Format Vulnerability in Solaris 7 snmpdx</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>snmpdx</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0796" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0796"/>
        <description>Format string vulnerability in the logging component of snmpdx for Solaris 5.6 through 8 allows remote attackers to gain root privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File snmpdx exists" negate="false" test_ref="oval:org.mitre.oval:tst:3126"/>
          <criterion comment="Patch 107709-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2994"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="snmpdx running" negate="false" test_ref="oval:org.mitre.oval:tst:3124"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:120" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 KCMS Arbitrary File Access Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>kcms_server</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0027" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0027"/>
        <description>Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File kcms_server exists" negate="false" test_ref="oval:org.mitre.oval:tst:2931"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains kcms_server" negate="false" test_ref="oval:org.mitre.oval:tst:2930"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File kcms_server executable and SUID or SGID">
            <criterion comment="File kcms_server executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:2929"/>
            <criterion comment="File kcms_server executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:2928"/>
            <criterion comment="File kcms_server executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:2927"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1227" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla FTP URI MIME Type Exploit Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0760" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0760"/>
        <description>Mozilla allows remote attackers to cause Mozilla to open a URI as a different MIME type than expected via a null character (%00) in an FTP URI.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:124" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 cachefsd Heap Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>cachefsd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0033" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0033"/>
        <description>Heap-based buffer overflow in cfsd_calloc function of Solaris cachefsd allows remote attackers to execute arbitrary code via a request with a long directory and cache name.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2005-01-28T12:00:00.000-04:00" comment="Added patch test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-01T08:29:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File cachefsd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3053"/>
          <criterion comment="Patch 108800-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3024"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains cachefsd" negate="false" test_ref="oval:org.mitre.oval:tst:3049"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File cachefsd executable">
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3048"/>
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3047"/>
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3046"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:131" version="1" class="vulnerability">
      <metadata>
        <title>Heap Overflow in Solaris 7 xlock</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>xlock</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0652" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0652"/>
        <description>Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a long (1) XFILESEARCHPATH or (2) XUSERFILESEARCHPATH environmental variable.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File xlock exists" negate="false" test_ref="oval:org.mitre.oval:tst:3130"/>
          <criterion comment="Patch 108376-30 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2912"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File xlock SUID and executable">
            <criterion comment="File xlock SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3128"/>
            <criterion comment="File xlock SUID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3127"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:14" version="1" class="vulnerability">
      <metadata>
        <title>Sun Solaris 8 XSun Color Database File Heap Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>Xsun</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0158" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0158"/>
        <description>Buffer overflow in Xsun on Solaris 2.6 through 8 allows local users to gain root privileges via a long -co (color database) command line argument.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-08-23T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File Xsun exists" negate="false" test_ref="oval:org.mitre.oval:tst:3109"/>
          <criterion comment="Patch 108652-52 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3108"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File Xsun SGID and executable">
            <criterion comment="File Xsun SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3107"/>
            <criterion comment="File Xsun SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3106"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1467" version="1" class="vulnerability">
      <metadata>
        <title>Samba Encrypted Password DoS</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Samba</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1318" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1318"/>
        <description>Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the overflow during decryption in which a DOS codepage string is converted to a little-endian UCS2 unicode string.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Samba - Usr (SUNWsmbau) installed" negate="false" test_ref="oval:org.mitre.oval:tst:914"/>
          <criterion comment="Patch 114684-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:913"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="smbd running" negate="false" test_ref="oval:org.mitre.oval:tst:912"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1479" version="1" class="vulnerability">
      <metadata>
        <title>Integer Overflow in libpng via Malformed PNG Image</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>libpng</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0599" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0599"/>
        <description>Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) progressive display image reading capability in libpng 1.2.5 and earlier allow remote attackers to cause a denial of service (application crash) via a malformed PNG image.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T12:04:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Netscape installed" negate="false" test_ref="oval:org.mitre.oval:tst:901"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1482" version="1" class="vulnerability">
      <metadata>
        <title>Management Console Directory Traversal Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Solaris Management Console (SMC)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1354" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1354"/>
        <description>The Solaris Management Console (SMC) in Sun Solaris 8 and 9 generates different 404 error messages when a file does not exist versus when a file exists but is otherwise inacessible, which could allow remote attackers to obtain sensitive information in conjunction with a directory traversal (..) attack.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-08-22T04:00:00.000-04:00" comment="Affected product changed to Sun Management Console (SMC); mistakenly was .NET framework">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Solaris Management Console Web Components (SUNWwbmc) installed" negate="false" test_ref="oval:org.mitre.oval:tst:900"/>
          <criterion comment="Patch 111313-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:899"/>
          <criterion comment="Patch 116807-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:898"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="smcboot running" negate="false" test_ref="oval:org.mitre.oval:tst:897"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:149" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 X Font Server Remote Buffer Overrun</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>fs.auto, xfs</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1317" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1317"/>
        <description>Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-08T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File fs.auto exists" negate="false" test_ref="oval:org.mitre.oval:tst:2873"/>
          <criterion comment="File xfs exists" negate="false" test_ref="oval:org.mitre.oval:tst:2872"/>
          <criterion comment="Patch 109862-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2871"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains fs.auto" negate="false" test_ref="oval:org.mitre.oval:tst:2870"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File xfs executable">
            <criterion comment="File xfs executable" negate="false" test_ref="oval:org.mitre.oval:tst:2869"/>
            <criterion comment="File xfs executable" negate="false" test_ref="oval:org.mitre.oval:tst:2868"/>
            <criterion comment="File xfs executable" negate="false" test_ref="oval:org.mitre.oval:tst:2867"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:15" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 CDE ToolTalk Database Null Write Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0677" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0677"/>
        <description>CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-31T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File rpc.ttdbserverd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3105"/>
          <criterion comment="Patch 110286-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3104"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File rpc.ttdbserverd executable">
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3102"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3101"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3100"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:152" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 X Font Server Remote Buffer Overrun</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>fs.auto, xfs</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1317" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1317"/>
        <description>Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-09-08T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File fs.auto exists" negate="false" test_ref="oval:org.mitre.oval:tst:2873"/>
          <criterion comment="File xfs exists" negate="false" test_ref="oval:org.mitre.oval:tst:2872"/>
          <criterion comment="Patch 108117-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2864"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains fs.auto" negate="false" test_ref="oval:org.mitre.oval:tst:2870"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File xfs executable">
            <criterion comment="File xfs executable" negate="false" test_ref="oval:org.mitre.oval:tst:2869"/>
            <criterion comment="File xfs executable" negate="false" test_ref="oval:org.mitre.oval:tst:2868"/>
            <criterion comment="File xfs executable" negate="false" test_ref="oval:org.mitre.oval:tst:2867"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1528" version="1" class="vulnerability">
      <metadata>
        <title>ls-F Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>TENEX C Shell (tcsh)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-1024" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1024"/>
        <description>Unknown vulnerability in the ls-F builtin function in tcsh on Solaris 8 allows local users to create or delete files as other users, and gain privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-08-22T04:00:00.000-04:00" comment="Affected product changed to tcsh; mistakenly was .NET framework">
              <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
            </modified>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
        <criterion comment="Patch 110943-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:880"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1654" version="1" class="vulnerability">
      <metadata>
        <title>gzip -force File Permission Alteration Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>Licence Logging Service</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1349" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1349"/>
        <description>gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will change the permissions of files that are hard linked to the target files, which allows local users to view or modify these files.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
        <criterion comment="GNU Zip (gzip, SUNWgzip) installed" negate="false" test_ref="oval:org.mitre.oval:tst:790"/>
        <criterion comment="Patch 112668-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:789"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1684" version="1" class="vulnerability">
      <metadata>
        <title>sendfilev DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>sendfilev()</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1356" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1356"/>
        <description>Unknown vulnerability in the sendfilev function in Sun Solaris 8 and 9 allows local users to cause a denial of service (system panic) via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 108528-27 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:778"/>
        <criterion comment="Patch 112233-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:777"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1707" version="1" class="vulnerability">
      <metadata>
        <title>Enterprise Storage Manager 2.1 SAN Manager management station patch</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>Sun Enterprise Storage Manager (ESM)</product>
        </affected>
        <description/>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Sun Enterprise Storage Manager installed" negate="false" test_ref="oval:org.mitre.oval:tst:762"/>
        <criterion comment="Patch 117367-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:761"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1732" version="1" class="vulnerability">
      <metadata>
        <title>/usr/lib/print/conv_fix Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1360" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1360"/>
        <description>Unknown vulnerability in conv_fix in Sun Solaris 7 through 9, when invoked by conv_lpd, allows local users to overwrite arbitrary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="SunSoft Print - Client - Usr (SUNWpcu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:753"/>
        <criterion comment="Patch 107115-14 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:752"/>
        <criterion comment="Patch 109320-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:751"/>
        <criterion comment="Patch 113329-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:750"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:175" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 CDE ToolTalk Database Server Symbolic Link Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0678" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0678"/>
        <description>CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-29T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File rpc.ttdbserverd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3105"/>
          <criterion comment="Patch 110286-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3104"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File rpc.ttdbserverd executable">
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3102"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3101"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3100"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:177" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 CDE ToolTalk Database Heap Corruption Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0679" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0679"/>
        <description>Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-29T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File rpc.ttdbserverd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3105"/>
          <criterion comment="Patch 107893-20 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2850"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File rpc.ttdbserverd executable">
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3102"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3101"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3100"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:179" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 LBXProxy Display Name Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>lbxproxy</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0090" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0090"/>
        <description>Buffer overflow in Low BandWidth X proxy (lbxproxy) in Solaris 8 allows local users to execute arbitrary code via a long display command line option.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File lbxproxy exists" negate="false" test_ref="oval:org.mitre.oval:tst:2964"/>
          <criterion comment="Patch 107654-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2848"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File lbxproxy SGID and executable">
            <criterion comment="File lbxproxy SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:2962"/>
            <criterion comment="File lbxproxy SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:2961"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1844" version="1" class="vulnerability">
      <metadata>
        <title>ypbind Daemon Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>NIS</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-1328" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-1328"/>
        <description>Buffer overflow in ypbind daemon in Solaris 5.4 through 8 allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-29T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7 or 8 installed">
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          </criteria>
          <criterion comment="NIS/NIS+ Utilities installed (SUNWnisu)" negate="false" test_ref="oval:org.mitre.oval:tst:690"/>
          <criterion comment="Patch 108750-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:689"/>
          <criterion comment="Patch 110322-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:688"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="ypbind running" negate="false" test_ref="oval:org.mitre.oval:tst:687"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1880" version="1" class="vulnerability">
      <metadata>
        <title>CDE dtspcd Daemon Symlink Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>dtspcd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0689" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0689"/>
        <description>The CDE dtspcd daemon allows local users to execute arbitrary commands via a symlink attack.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
        <criterion comment="CDE Daemons (SUNWdtdmn) installed" negate="false" test_ref="oval:org.mitre.oval:tst:680"/>
        <criterion comment="Patch 108221-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:679"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1905" version="1" class="vulnerability">
      <metadata>
        <title>dtsession Buffer Overflow via HOME Envvar</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0092" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0092"/>
        <description>Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
        <criterion comment="Patch 107702-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:674"/>
        <criterion comment="Patch 109354-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:673"/>
        <criterion comment="Patch 114497-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:672"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:192" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 CDE ToolTalk Database Heap Corruption Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0679" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0679"/>
        <description>Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-29T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File rpc.ttdbserverd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3105"/>
          <criterion comment="Patch 110286-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2827"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File rpc.ttdbserverd executable">
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3102"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3101"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3100"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:195" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 KCMS Arbitrary File Access Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>kcms_server</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0027" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0027"/>
        <description>Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-24T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File kcms_server exists" negate="false" test_ref="oval:org.mitre.oval:tst:2931"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains kcms_server" negate="false" test_ref="oval:org.mitre.oval:tst:2930"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File kcms_server executable and SUID or SGID">
            <criterion comment="File kcms_server executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:2929"/>
            <criterion comment="File kcms_server executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:2928"/>
            <criterion comment="File kcms_server executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:2927"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1970" version="1" class="vulnerability">
      <metadata>
        <title>Off-by-one Error in fb_realpath()</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Solaris Management Console (SMC)</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0466" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0466"/>
        <description>Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via commands that cause pathnames of length MAXPATHLEN+1 to trigger a buffer overflow, including (1) STOR, (2) RETR, (3) APPE, (4) DELE, (5) MKD, (6) RMD, (7) STOU, or (8) RNTO.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="FTP Server - Usr (SUNWftpu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:661"/>
          <criterion comment="Patch 114564-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:660"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains in.ftpd" negate="false" test_ref="oval:org.mitre.oval:tst:659"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:1982" version="1" class="vulnerability">
      <metadata>
        <title>Apache Connection Blocking Denial Of Service Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0174" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0174"/>
        <description>Apache 1.4.x before 1.3.30, and 2.0.x before 2.0.49, when using multiple listening sockets on certain platforms, allows remote attackers to cause a denial of service (blocked new connections) via a "short-lived connection on a rarely-accessed listening socket."</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:13:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:12:00.000-04:00" comment="Changed apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:17:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2011" version="1" class="vulnerability">
      <metadata>
        <title>ISC BIND Cache Poison Denial Of Service</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Bind</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0914" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0914"/>
        <description>ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T12:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-01-11T12:00:00.000-04:00" comment="modified sat-10 - Changed test to pattern match to check for 64bit version of Core Solaris">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="modified sat-10 - Changed regular expression to properly check for 64bit package">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-01-24T02:36:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 106938-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:642"/>
          <criterion comment="Patch 109326-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:641"/>
          <criterion comment="Patch 112970-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:640"/>
          <criterion comment="Core Solaris (SUNWcsu/SUNWcsxu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:639"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="in.named running" negate="false" test_ref="oval:org.mitre.oval:tst:2624"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2065" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos Client Plaintext Password Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>pam_krb5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0653" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0653"/>
        <description>Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user's passwords by reading log files.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed all unknown tests to solaris file contents tests">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" negate="false" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion comment="Patch 112908-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:630"/>
          <criterion comment="Patch 112908-12 installed" negate="false" test_ref="oval:org.mitre.oval:tst:629"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/pam.conf is configured to use pam_krb5 as an 'auth' module and the debug feature of pam_krb5 is enabled" negate="false" test_ref="oval:org.mitre.oval:tst:628"/>
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
          <criterion comment="/etc/syslog.conf is configured to log &quot;debug&quot; level messages for at least daemon" negate="false" test_ref="oval:org.mitre.oval:tst:627"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2094" version="1" class="vulnerability">
      <metadata>
        <title>BIND DoS via SIG RR Elements</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Bind</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1221" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1221"/>
        <description>BIND 8.x through 8.3.3 allows remote attackers to cause a denial of service (crash) via SIG RR elements with invalid expiry times, which are removed from the internal BIND database and later cause a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Internet Domain Name Server (BIND, SUNWinamd) installed" negate="false" test_ref="oval:org.mitre.oval:tst:2626"/>
          <criterion comment="Patch 106938-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:623"/>
          <criterion comment="Patch 109326-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:622"/>
          <criterion comment="Patch 112970-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2625"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="in.named running" negate="false" test_ref="oval:org.mitre.oval:tst:2624"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2139" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos 5 ASN.1 Library DoS</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0644" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0644"/>
        <description>The asn1buf_skiptail function in the ASN.1 decoder library for MIT Kerberos 5 (krb5) 1.2.2 through 1.3.4 allows remote attackers to cause a denial of service (infinite loop) via a certain BER encoding.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed kerberos unknown test to solaris file contents test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" negate="false" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion comment="Patch 112908-15 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:616"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2163" version="1" class="vulnerability">
      <metadata>
        <title>Samba call_trans2open() Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Samba</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0201" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0201"/>
        <description>Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Samba (SUNWsmbar) installed" negate="false" test_ref="oval:org.mitre.oval:tst:615"/>
          <criterion comment="Patch 114684-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:614"/>
        </criteria>
        <criteria comment="Configuration section" operator="OR">
          <criteria operator="AND" comment="Inetd running and inetd.conf contains smbd">
            <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
            <criterion comment="" negate="false" test_ref="oval:org.mitre.oval:tst:613"/>
          </criteria>
          <criterion comment="smbd running" negate="false" test_ref="oval:org.mitre.oval:tst:912"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2183" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail Custom DNS Map Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0906" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0906"/>
        <description>Buffer overflow in Sendmail before 8.12.5, when configured to use a custom DNS map to query TXT records, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malicious DNS server.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-22T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-27T12:00:00.000-04:00" comment="Removed &quot;Sendmail running&quot; configuration test.  Sendmail installs as SUID root">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-04-20T12:13:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        <criterion comment="Sendmail - root (SUNWsndmr) installed" negate="false" test_ref="oval:org.mitre.oval:tst:608"/>
        <criterion comment="Patch 113575-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:607"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2222" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail Address Processor Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1337" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1337"/>
        <description>Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Sendmail - user (SUNWsndmu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:587"/>
          <criterion comment="Patch 107684-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:586"/>
          <criterion comment="Patch 110615-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:585"/>
          <criterion comment="Patch 113575-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:584"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Sendmail running" negate="false" test_ref="oval:org.mitre.oval:tst:583"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2248" version="1" class="vulnerability">
      <metadata>
        <title>Sun RPC No Timeout Denial of Service on TCP Ports</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>libc</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1265" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1265"/>
        <description>The Sun RPC functionality in multiple libc implementations does not provide a time-out mechanism when reading data from TCP connections, which allows remote attackers to cause a denial of service (hang).</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criteria operator="AND" comment="All RPC w/TCP patches installed - CVE-2002-1265">
            <criterion comment="Patch 108748-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:581"/>
            <criterion comment="Patch 108750-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:580"/>
            <criteria operator="OR" comment="Patches 108752-01 or 106541-14 installed">
              <criterion comment="Patch 108752-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:579"/>
              <criterion comment="Patch 106541-14 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:578"/>
            </criteria>
            <criterion comment="Patch 106942-09 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:577"/>
            <criterion comment="Patch 107477-03 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:576"/>
            <criterion comment="Patch 108551-03 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:575"/>
            <criterion comment="Patch 108754-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:574"/>
            <criterion comment="Patch 108756-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:573"/>
            <criterion comment="Patch 108758-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:572"/>
            <criterion comment="Patch 108760-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:571"/>
            <criterion comment="Patch 108762-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:570"/>
            <criterion comment="Patch 108764-01 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:569"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="rpcbind running" negate="false" test_ref="oval:org.mitre.oval:tst:568"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2378" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Buffer Overflows in libpng</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>libpng</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0597" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0597"/>
        <description>Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute arbitrary code via malformed PNG images in which (1) the png_handle_tRNS function does not properly validate the length of transparency chunk (tRNS) data, or the (2) png_handle_sBIT or (3) png_handle_hIST functions do not perform sufficient bounds checking.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T12:04:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Netscape installed" negate="false" test_ref="oval:org.mitre.oval:tst:901"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2418" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla, Firefox, Thunderbird User Interface Hijacking Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0764" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0764"/>
        <description>Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote web sites to hijack the user interface via the "chrome" flag and XML User Interface Language (XUL) files.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2423" version="1" class="vulnerability">
      <metadata>
        <title>ypxfrd File Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>NIS</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1199" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1199"/>
        <description>The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="NIS Server - User (SUNWypu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:547"/>
          <criterion comment="Patch 106541-24 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:546"/>
          <criterion comment="Patch 109328-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:545"/>
          <criterion comment="Patch 113579-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:544"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="ypxfrd running" negate="false" test_ref="oval:org.mitre.oval:tst:543"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2426" version="1" class="vulnerability">
      <metadata>
        <title>BSM Audit Kernel Panic</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Basic Security Module</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0654" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0654"/>
        <description>Unknown vulnerability in the Basic Security Module (BSM), when configured to audit either the Administrative (ad) or the System-Wide Administration (as) audit class in Solaris 7, 8, and 9, allows local users to cause a denial of service (kernel panic).</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T09:40:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T01:15:00.000-04:00">DRAFT</status_change>
          </dates>
          <status>DRAFT</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Patch 106541-33 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:542"/>
          <criterion comment="Patch 109007-18 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:541"/>
          <criterion comment="Patch 114332-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:540"/>
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Basic Security Module enabled" negate="false" test_ref="oval:org.mitre.oval:tst:539"/>
          <criterion comment="Auditing Administrative or System-Wide Administrative audit classes" negate="false" test_ref="oval:org.mitre.oval:tst:538"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2539" version="1" class="vulnerability">
      <metadata>
        <title>BIND SIG Resource Records Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Bind</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1219" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1219"/>
        <description>Buffer overflow in named in BIND 4 versions 4.9.10 and earlier, and 8 versions 8.3.3 and earlier, allows remote attackers to execute arbitrary code via a certain DNS server response containing SIG resource records (RR).</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Internet Domain Name Server (BIND, SUNWinamd) installed" negate="false" test_ref="oval:org.mitre.oval:tst:2626"/>
          <criterion comment="Patch 106938-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:623"/>
          <criterion comment="Patch 109326-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:622"/>
          <criterion comment="Patch 112970-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2625"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="in.named running" negate="false" test_ref="oval:org.mitre.oval:tst:2624"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2572" version="1" class="vulnerability">
      <metadata>
        <title>DoS Vulnerability in libpng function png_handle_iCCP()</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>libpng</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0598" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0598"/>
        <description>The png_handle_iCCP function in libpng 1.2.5 and earlier allows remote attackers to cause a denial of service (application crash) via a certain PNG image that triggers a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T12:04:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Netscape installed" negate="false" test_ref="oval:org.mitre.oval:tst:901"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2590" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL Double-free Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sun Cluster</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0545" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0545"/>
        <description>Double-free vulnerability in OpenSSL 0.9.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an SSL client certificate with a certain invalid ASN.1 encoding.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:11:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 113505-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:511"/>
          <criterion comment="Patch 113508-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:510"/>
          <criterion comment="Patch 115054-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:509"/>
          <criterion comment="Patch 115055-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:508"/>
          <criterion comment="SunCluster Component SUNWscvw installed" negate="false" test_ref="oval:org.mitre.oval:tst:507"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running with SunPlex Manager config" negate="false" test_ref="oval:org.mitre.oval:tst:506"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2592" version="1" class="vulnerability">
      <metadata>
        <title>KCMS KCS_OPEN_PROFILE File Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>kcms_server</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0027" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0027"/>
        <description>Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Kodak Color Managment Server (KCMS) Runtime Environment (SUNWkcsrt/SUNWkcsrx) installed" negate="false" test_ref="oval:org.mitre.oval:tst:505"/>
          <criterion comment="Patch 114636-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:504"/>
          <criterion comment="Patch 107337-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:503"/>
          <criterion comment="Patch 111400-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:502"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains kcms_server" negate="false" test_ref="oval:org.mitre.oval:tst:2930"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2621" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL Denial of Service Vulnerabilities</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>Sun Crypto Accelerator 4000</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0079" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0079"/>
        <description>The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T09:44:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T01:15:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-10-27T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-11-17T10:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 114796-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:501"/>
          <criterion comment="Sun Crypto Accelerator 4000 software installed" negate="false" test_ref="oval:org.mitre.oval:tst:500"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2719" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Management Error in OpenSSH</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>OpenSSH</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0693" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0693"/>
        <description>A "buffer management error" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to execute arbitrary code by causing an incorrect amount of memory to be freed and corrupting the heap, a different vulnerability than CVE-2003-0695.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Patch 113273-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:485"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="sshd running" negate="false" test_ref="oval:org.mitre.oval:tst:484"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2770" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 9 CDE ToolTalk Database Server Symbolic Link Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0678" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0678"/>
        <description>CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-15T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T12:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-01-11T12:00:00.000-04:00" comment="modified sat-6 - Changed test to pattern match and added check for 64bit version">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="modified sat-6 - Changed regular expression test to properly check for 64bit package">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-01-24T02:39:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Toolktalk (SUNWtltk/SUNWtltkx) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1169"/>
          <criterion comment="Patch 112808-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1168"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2816" version="1" class="vulnerability">
      <metadata>
        <title>XFS Dispatch() Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>fs.auto, xfs</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1317" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1317"/>
        <description>Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="X Window System Font Server (SUNWxwfs) installed" negate="false" test_ref="oval:org.mitre.oval:tst:478"/>
          <criterion comment="Patch 113923-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:477"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains fs.auto" negate="false" test_ref="oval:org.mitre.oval:tst:2870"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2972" version="1" class="vulnerability">
      <metadata>
        <title>Solaris TCP/IP Stack System Panic Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>TCP/IP</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1355" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1355"/>
        <description>Unknown vulnerability in the TCP/IP stack for Sun Solaris 8 and 9 allows local users to cause a denial of service (system panic) via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 116895-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:468"/>
        <criterion comment="Patch 117000-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:467"/>
        <criterion comment="Patch 112233-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:777"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:2975" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail prescan function Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0694" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0694"/>
        <description>The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-29T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Sendmail - user (SUNWsndmu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:587"/>
        <criterion comment="Patch 107684-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:466"/>
        <criterion comment="Patch 110615-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:465"/>
        <criterion comment="Patch 113575-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:464"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3078" version="1" class="vulnerability">
      <metadata>
        <title>CDE AddSuLog Function Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0691" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0691"/>
        <description>Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
        <criterion comment="CDE application basic runtime environment (SUNWdtbas/SUNWdtbax) installed" negate="false" test_ref="oval:org.mitre.oval:tst:459"/>
        <criterion comment="Patch 108219-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:458"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:31" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8/9 cachefsd Heap Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>cachefsd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0033" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0033"/>
        <description>Heap-based buffer overflow in cfsd_calloc function of Solaris cachefsd allows remote attackers to execute arbitrary code via a request with a long directory and cache name.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-31T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2005-01-28T12:00:00.000-04:00" comment="Updated to include Solaris 9 and Solaris 9 patch info">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-01T08:24:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="File cachefsd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3053"/>
          <criterion comment="Patch 110896-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3052"/>
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 114008-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3050"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains cachefsd" negate="false" test_ref="oval:org.mitre.oval:tst:3049"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File cachefsd executable">
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3048"/>
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3047"/>
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3046"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3134" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla CA Certificate DoS</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0758" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0758"/>
        <description>Mozilla 1.5 through 1.7 allows a CA certificate to be imported even when their DN is the same as that of the built-in CA root certificate, which allows remote attackers to cause a denial of service to SSL pages because the malicious certificate is treated as invalid.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3250" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla, Firefox, Thunderbird POP3 SendUidl Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0757" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0757"/>
        <description>Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, may allow remote POP3 mail servers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:33" version="1" class="vulnerability">
      <metadata>
        <title>Sun Solaris 7 XSun Color Database File Heap Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Xsun</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0158" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0158"/>
        <description>Buffer overflow in Xsun on Solaris 2.6 through 8 allows local users to gain root privileges via a long -co (color database) command line argument.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File Xsun exists" negate="false" test_ref="oval:org.mitre.oval:tst:3109"/>
          <criterion comment="Patch 108376-38 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3044"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File Xsun SGID and executable">
            <criterion comment="File Xsun SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3107"/>
            <criterion comment="File Xsun SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:3106"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3322" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos 5 Double-free Vulnerability in krb5_rd_cred Function</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0643" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0643"/>
        <description>Double-free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed kerberos unknown test to solaris file contents test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" negate="false" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion comment="Patch 112908-15 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:616"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3400" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Overflow in Solaris ping Daemon</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Licence Logging Service</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1352" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1352"/>
        <description>Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7 or 8 OR Solaris 9 and Solaris Basic IP Commands (SUNWbip) installed">
          <criteria operator="OR" comment="Solaris 7 or 8 installed">
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          </criteria>
          <criteria operator="AND" comment="Solaris 9 and Solaris Basic IP Commands (SUNWbip) installed">
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
            <criterion comment="Solaris Basic IP Commands (SUNWbip) installed" negate="false" test_ref="oval:org.mitre.oval:tst:433"/>
          </criteria>
        </criteria>
        <criterion comment="Patch 118313-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:432"/>
        <criterion comment="Patch 116986-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:431"/>
        <criterion comment="Patch 116774-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:430"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3505" version="1" class="vulnerability">
      <metadata>
        <title>sshd Log Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>sshd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1357" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1357"/>
        <description>The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, which makes it easier for remote attackers to hide the source of their activities.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Secure Shell Server - Usr (SUNWsshdu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:417"/>
          <criterion comment="Patch 113273-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:416"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/ssh/sshd_config has 0.0.0.0 as ListenAddress" negate="false" test_ref="oval:org.mitre.oval:tst:415"/>
          <criterion comment="sshd running" negate="false" test_ref="oval:org.mitre.oval:tst:484"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3567" version="1" class="vulnerability">
      <metadata>
        <title>Patches Disable Basic Security Module Auditing Functionality</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Basic Security Module</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1358" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1358"/>
        <description>The patches (1) 114332-08 and (2) 114929-06 for Sun Solaris 9 disable the auditing functionality of the Basic Security Module (BSM), which allows attackers to avoid having their activity logged.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Patch 114332-08 installed" negate="false" test_ref="oval:org.mitre.oval:tst:406"/>
          <criterion comment="Patch 114332-10 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:405"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/system has BSM enabled" negate="false" test_ref="oval:org.mitre.oval:tst:404"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3601" version="1" class="vulnerability">
      <metadata>
        <title>Runtime linker, ld.so.1 LD_PRELOAD Envvar Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Solaris Runtime Linker</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0609" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0609"/>
        <description>Stack-based buffer overflow in the runtime linker, ld.so.1, on Solaris 2.6 through 9 allows local users to gain root privileges via a long LD_PRELOAD environment variable.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-29T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Solaris 9 OR Patch 106950-14+ OR Patch 109147-07+ installed">
          <criterion comment="Patch 106950-14 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:397"/>
          <criterion comment="Patch 109147-07 or later installed" negate="false" test_ref="oval:org.mitre.oval:tst:396"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 106950-14 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:397"/>
        <criterion comment="Patch 109147-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:396"/>
        <criterion comment="Patch 112963-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:395"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3603" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla, Firefox, Thunderbird Security Lock Icon Spoof Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0761" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0761"/>
        <description>Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote attackers to use certain redirect sequences to spoof the security lock icon that makes a web page appear to be encrypted.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3606" version="1" class="vulnerability">
      <metadata>
        <title>Sendmail Ruleset Parsing Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sendmail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0681" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0681"/>
        <description>A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:26:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T01:15:00.000-04:00">DRAFT</status_change>
          </dates>
          <status>DRAFT</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Sendmail - root (SUNWsndmr) installed" negate="false" test_ref="oval:org.mitre.oval:tst:608"/>
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 107684-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:392"/>
          <criterion comment="Patch 110615-11 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:391"/>
          <criterion comment="Patch 113575-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:464"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Sendmail running" negate="false" test_ref="oval:org.mitre.oval:tst:583"/>
          <criterion comment="Sendmail has recipient or final rulesets" negate="false" test_ref="oval:org.mitre.oval:tst:393"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3637" version="1" class="vulnerability">
      <metadata>
        <title>priocntl Directory Traversal Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>priocntl()</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1296" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1296"/>
        <description>Directory traversal vulnerability in priocntl system call in Solaris does allows local users to execute arbitrary code via ".." sequences in the pc_clname field of a pcinfo_t structure, which cause priocntl to load a malicious kernel module.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 106541-24 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:546"/>
        <criterion comment="Patch 108528-18 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:390"/>
        <criterion comment="Patch 112233-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:389"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3799" version="1" class="vulnerability">
      <metadata>
        <title>Apache Web Server Multiple Module Local Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0542" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0542"/>
        <description>Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:08:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 113146-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:383"/>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3831" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Overflow in ntp Daemon via readvar</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <product>sendfilev()</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0414" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0414"/>
        <description>Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long readvar argument.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7 or 8 installed">
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          </criteria>
          <criterion comment="NTP daemon - Usr (SUNWntpu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:379"/>
          <criterion comment="Patch 109409-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:378"/>
          <criterion comment="Patch 109667-04 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:377"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="xntpd running" negate="false" test_ref="oval:org.mitre.oval:tst:376"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3960" version="1" class="vulnerability">
      <metadata>
        <title>in.named Process Crash Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>Bind</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1348" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1348"/>
        <description>Unknown vulnerability in in.named on Solaris 8 allows remote attackers to cause a denial of service (process crash).</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Internet Domain Name Server (BIND, SUNWinamd) installed" negate="false" test_ref="oval:org.mitre.oval:tst:2626"/>
          <criterion comment="Patch 109326-16 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:372"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="File /etc/named.conf exists" negate="false" test_ref="oval:org.mitre.oval:tst:371"/>
          <criterion comment="in.named running" negate="false" test_ref="oval:org.mitre.oval:tst:2624"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:3989" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla Firefox Certificate Spoofing Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0763" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0763"/>
        <description>Mozilla Firefox 0.9.1 and 0.9.2 allows remote web sites to spoof certificates of trusted web sites via redirects and Javascript that uses the "onunload" method.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4030" version="1" class="vulnerability">
      <metadata>
        <title>DtMail Local Command Line Format String Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>DtMail</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0800" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0800"/>
        <description>Format string vulnerability in CDE Mailer (dtmail) on Solaris 8 and 9 allows local users to gain privileges via format strings in the argv[0] value.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:09:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 109613-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:365"/>
        <criterion comment="Patch 112810-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:364"/>
        <criterion comment="CDE Desktop Applications (SUNWdtdst) installed" negate="false" test_ref="oval:org.mitre.oval:tst:363"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4098" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vulnerabilities in lpstat and libprint</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>lpstat, libprint</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0999" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0999"/>
        <description>Unknown multiple vulnerabilities in (1) lpstat and (2) the libprint library in Solaris 2.6 through 9 may allow attackers to execute arbitrary code or read or write arbitrary files.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Solaris Printing Services installed (any SUNWpcr/SUNWpcu/SUNWpsr/SUNWpsu)">
          <criterion comment="Solaris Print - Client - Root (SUNWpcr) installed" negate="false" test_ref="oval:org.mitre.oval:tst:352"/>
          <criterion comment="Solaris Print - Client - Usr (SUNWpcu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:351"/>
          <criterion comment="Solaris Print - LP Server - Root (SUNWpsr) installed" negate="false" test_ref="oval:org.mitre.oval:tst:350"/>
          <criterion comment="Solaris Print - LP Server - Usr (SUNWpsu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:349"/>
        </criteria>
        <criterion comment="Patch 107115-13 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:348"/>
        <criterion comment="Patch 109320-07 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:347"/>
        <criterion comment="Patch 113329-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:346"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:41" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 RWall Daemon Syslog Format String Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>rpc.rwalld</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0573" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0573"/>
        <description>Format string vulnerability in RPC wall daemon (rpc.rwalld) for Solaris 2.5.1 through 8 allows remote attackers to execute arbitrary code via format strings in a message that is not properly provided to the syslog function when the wall command cannot be executed.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File rpc.rwalld exists" negate="false" test_ref="oval:org.mitre.oval:tst:3032"/>
          <criterion comment="Patch 112899-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3031"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.rwalld" negate="false" test_ref="oval:org.mitre.oval:tst:3030"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File rpc.rwalld executable">
            <criterion comment="File rpc.rwalld executable" negate="false" test_ref="oval:org.mitre.oval:tst:3029"/>
            <criterion comment="File rpc.rwalld executable" negate="false" test_ref="oval:org.mitre.oval:tst:3028"/>
            <criterion comment="File rpc.rwalld executable" negate="false" test_ref="oval:org.mitre.oval:tst:3027"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4114" version="1" class="vulnerability">
      <metadata>
        <title>Apache Error Log Escape Sequence Injection Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0020" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0020"/>
        <description>Apache does not filter terminal escape sequences from its error logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:14:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:14:00.000-04:00" comment="Change apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:18:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4190" version="1" class="vulnerability">
      <metadata>
        <title>Buffer Overflow in DNS Resolver Library</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Bind</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0651" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0651"/>
        <description>Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 106938-06 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:345"/>
          <criterion comment="Patch 109326-09 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:344"/>
          <criterion comment="Patch 112970-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:343"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/nsswitch.conf configured to resolve hosts through DNS" negate="false" test_ref="oval:org.mitre.oval:tst:342"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4254" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL Integer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sun Cluster</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0543" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0543"/>
        <description>Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote attackers to cause a denial of service (crash) via an SSL client certificate with certain ASN.1 tag values.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:10:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 113505-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:511"/>
          <criterion comment="Patch 113508-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:510"/>
          <criterion comment="Patch 115054-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:509"/>
          <criterion comment="Patch 115055-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:508"/>
          <criterion comment="SunCluster Component SUNWscvw installed" negate="false" test_ref="oval:org.mitre.oval:tst:507"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running with SunPlex Manager config" negate="false" test_ref="oval:org.mitre.oval:tst:506"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:43" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 cachefsd Buffer Overrun Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>cachefsd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0084" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0084"/>
        <description>Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2005-01-28T12:00:00.000-04:00" comment="Updated to add patch test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-01T08:25:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File cachefsd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3053"/>
          <criterion comment="Patch 108800-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3024"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains cachefsd" negate="false" test_ref="oval:org.mitre.oval:tst:3049"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File cachefsd executable">
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3048"/>
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3047"/>
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3046"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4329" version="1" class="vulnerability">
      <metadata>
        <title>cachefsd DoS via Invalid RPC Request</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>cachefsd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0085" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0085"/>
        <description>cachefsd in Solaris 2.6, 7, and 8 allows remote attackers to cause a denial of service (crash) via an invalid procedure call in an RPC request.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 108800-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3024"/>
          <criterion comment="Patch 110896-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2946"/>
          <criterion comment="Patch 114008-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3050"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains cachefsd" negate="false" test_ref="oval:org.mitre.oval:tst:3049"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4374" version="1" class="vulnerability">
      <metadata>
        <title>ToolTalk Buffer Overflow via TT_SESSION Envvar</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0693" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0693"/>
        <description>Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
        <criterion comment="CDE Desktop Window Manager (SUNWdtwm) installed" negate="false" test_ref="oval:org.mitre.oval:tst:675"/>
        <criterion comment="Patch 107893-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:331"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4383" version="1" class="vulnerability">
      <metadata>
        <title>lpq Buffer Overflow in bsd_queue()</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>lpstat</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0091" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0091"/>
        <description>Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local users to gain root privilege.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-02-01T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-02-01T08:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
        <criterion comment="SunSoft Print - Client - Usr (SUNWpcu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:753"/>
        <criterion comment="Patch 107115-12 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:330"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4403" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla, Firefox, Thunderbird XPInstall Security Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0762" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0762"/>
        <description>Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote web sites to install arbitrary extensions by using interactive events to manipulate the XPInstall Security dialog box.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4416" version="1" class="vulnerability">
      <metadata>
        <title>Apache mod_digest Nonce Verification Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0987" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0987"/>
        <description>mod_digest for Apache before 1.3.31 does not properly verify the nonce of a client response by using a AuthNonce secret.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:14:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:15:00.000-04:00" comment="Change apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:19:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:449" version="1" class="vulnerability">
      <metadata>
        <title>Bind OPT Resource Record DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Bind</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1220" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1220"/>
        <description>BIND 8.3.x through 8.3.3 allows remote attackers to cause a denial of service (termination due to assertion failure) via a request for a subdomain that does not exist, with an OPT resource record with a large UDP payload size.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Internet Domain Name Server (BIND, SUNWinamd) installed" negate="false" test_ref="oval:org.mitre.oval:tst:2626"/>
          <criterion comment="Patch 112970-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2625"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="in.named running" negate="false" test_ref="oval:org.mitre.oval:tst:2624"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4561" version="1" class="vulnerability">
      <metadata>
        <title>Solaris Code Execution DoS Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0669" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0669"/>
        <description>Unknown vulnerability in Solaris 2.6 through 9 causes a denial of service (system panic) via "a rare race condition" or an attack by local users.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criterion comment="Patch 106541-25 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:319"/>
        <criterion comment="Patch 108528-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:318"/>
        <criterion comment="Patch 112233-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:317"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4574" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL ASN.1 Inputs Character Tracking Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Sun Cluster</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0544" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0544"/>
        <description>OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characters in certain ASN.1 inputs, which allows remote attackers to cause a denial of service (crash) via an SSL client certificate that causes OpenSSL to read past the end of a buffer when the long form is used.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-19T03:10:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 113505-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:511"/>
          <criterion comment="Patch 113508-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:510"/>
          <criterion comment="Patch 115054-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:509"/>
          <criterion comment="Patch 115055-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:508"/>
          <criterion comment="SunCluster Component SUNWscvw installed" negate="false" test_ref="oval:org.mitre.oval:tst:507"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running with SunPlex Manager config" negate="false" test_ref="oval:org.mitre.oval:tst:506"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4629" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla, Netscape SOAPParameter Integer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0722" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0722"/>
        <description>Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versions, allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4661" version="1" class="vulnerability">
      <metadata>
        <title>MIT Kerberos 5 Multiple Double-Free Vulnerabilities</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0772" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0772"/>
        <description>Double-free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T03:18:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T01:16:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-10-27T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-11-17T10:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" negate="false" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion comment="Patch 112908-15 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:616"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Kerberos Key Distribution Center (krb5kdc) running" negate="false" test_ref="oval:org.mitre.oval:tst:314"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4670" version="1" class="vulnerability">
      <metadata>
        <title>Apache Mod_Access Access Control Rule Bypass Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0993" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0993"/>
        <description>mod_access in Apache 1.3 before 1.3.30, when running big-endian 64-bit platforms, does not properly parse Allow/Deny rules using IP addresses without a netmask, which could allow remote attackers to bypass intended access restrictions.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:13:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:16:00.000-04:00" comment="Changes apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:19:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4756" version="1" class="vulnerability">
      <metadata>
        <title>Mozilla, Firebird, Firefox Frame Injection Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mozilla</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0718" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0718"/>
        <description>The (1) Mozilla 1.6, (2) Firebird 0.7, (3) Firefox 0.8, and (4) Netscape 7.1 web browsers do not properly prevent a frame in one domain from injecting content into a frame that belongs to another domain, which facilitates web site spoofing and other attacks, aka the frame injection vulnerability.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T03:40:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T07:56:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 8 or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="Mozilla components (any SUNWmoznav/SUNWmozmail) installed">
          <criterion comment="Mozilla (SUNWmoznav) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1070"/>
          <criterion comment="Mozilla Mail (SUNWmozmail) installed" negate="false" test_ref="oval:org.mitre.oval:tst:1069"/>
        </criteria>
        <criterion comment="Patch 117765-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1068"/>
        <criterion comment="Patch 117767-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:1067"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4834" version="1" class="vulnerability">
      <metadata>
        <title>LDAP RBAC Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>LDAP</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1353" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1353"/>
        <description>Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), allows local users to execute certain commands with additional privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T04:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T04:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T04:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T04:00:00.000-04:00">ACCEPTED</status_change>
            <status_change date="2005-08-25T10:03:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-08-25T10:05:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-09-21T01:33:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-10-12T05:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 108993-38 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:300"/>
          <criterion comment="Patch 112960-17 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:299"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/nsswitch.conf configured to use LDAP with RBAC" negate="false" test_ref="oval:org.mitre.oval:tst:298"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4863" version="1" class="vulnerability">
      <metadata>
        <title>Apache Mod_Proxy Remote Negative Content-Length Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Apache</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0492" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0492"/>
        <description>Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-14T01:12:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <modified date="2004-10-18T03:16:00.000-04:00" comment="Changed apache test to file test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2004-10-19T11:20:00.000-04:00" comment="Changed apache test to package test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2004-10-20T02:35:00.000-04:00">DRAFT</status_change>
            <status_change date="2004-11-03T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-12-09T08:46:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 116973-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:656"/>
          <criterion comment="Patch 113146-05 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:655"/>
          <criterion comment="Apache (SUNWapchu) installed" negate="false" test_ref="oval:org.mitre.oval:tst:653"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="Apache running (httpd)" negate="false" test_ref="oval:org.mitre.oval:tst:654"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4936" version="1" class="vulnerability">
      <metadata>
        <title>Kerberos 5 KDC ASN.1 Error Handling Double-free Vulnerabilities</title>
        <affected family="unix">
          <platform>Sun Solaris 9</platform>
          <product>Kerberos5</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0642" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0642"/>
        <description>Double-free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for MIT Kerberos 5 (krb5) 1.3.4 and earlier may allow remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-10-12T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2004-10-13T12:00:00.000-04:00">DRAFT</status_change>
            <modified date="2005-01-14T12:00:00.000-04:00" comment="Changed kerberos unknown test to solaris file contents test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          <criterion comment="Kerberos 5 installed" negate="false" test_ref="oval:org.mitre.oval:tst:648"/>
          <criterion comment="Patch 112908-15 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:616"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="/etc/krb5/krb5.conf is configured with a kerberos domain" negate="false" test_ref="oval:org.mitre.oval:tst:1153"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5141" version="1" class="vulnerability">
      <metadata>
        <title>CDE libDtHelp Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0834" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0834"/>
        <description>Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3) LOGNAME.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-01-19T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-24T12:00:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-03-09T12:00:00.000-04:00">ACCEPTED</status_change>
            <modified date="2005-06-02T12:00:00.000-04:00" comment="Added product">
              <contributor organization="The MITRE Corporation">Christine Walzer</contributor>
            </modified>
            <status_change date="2005-06-08T03:17:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-29T06:49:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7,8,or 9 installed">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
        </criteria>
        <criteria operator="OR" comment="CDE Application Runtime or CDE Separable Help (any SUNWdtbas/SUNWdtbax/SUNWdthep) installed">
          <criterion comment="CDE application basic runtime environment (SUNWdtbas/SUNWdtbax) installed" negate="false" test_ref="oval:org.mitre.oval:tst:459"/>
          <criterion comment="Separable help for CDE (SUNWdthep) installed" negate="false" test_ref="oval:org.mitre.oval:tst:280"/>
        </criteria>
        <criterion comment="Patch 107178-03 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:279"/>
        <criterion comment="Patch 108949-08 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:278"/>
        <criterion comment="Patch 116308-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:277"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:555" version="1" class="vulnerability">
      <metadata>
        <title>Xsun Buffer Overflow via HOME Envvar</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>Xsun</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0422" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0422"/>
        <description>Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-12-28T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-01-12T12:41:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-02-02T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-23T09:25:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criteria operator="OR" comment="Solaris 7 or 8 installed">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
        </criteria>
        <criterion comment="Patch 108376-25 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2562"/>
        <criterion comment="Patch 108652-30 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2561"/>
        <criterion comment="X Window System platform software (SUNWxwplt) installed" negate="false" test_ref="oval:org.mitre.oval:tst:2560"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:56" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 rpc.yppasswdd Buffer Overrun Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>rpc.yppasswdd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0779" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0779"/>
        <description>Buffer overflow in rpc.yppasswdd (yppasswd server) in Solaris 2.6, 7 and 8 allows remote attackers to gain root access via a long username.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-08-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File rpc.yppasswdd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3006"/>
          <criterion comment="Patch 111596-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3005"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="rpc.yppasswdd running" negate="false" test_ref="oval:org.mitre.oval:tst:3004"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:592" version="1" class="vulnerability">
      <metadata>
        <title>rwho daemon Code Execution Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <platform>Sun Solaris 8</platform>
          <platform>Sun Solaris 9</platform>
          <product>Licence Logging Service</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1351" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1351"/>
        <description>Unknown vulnerability in the rwho daemon (in.rwhod) for Solaris 7 through 9 allows remote attackers to execute arbitrary code.</description>
        <oval_repository>
          <dates>
            <submitted date="2005-04-13T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </submitted>
            <status_change date="2005-04-20T12:13:00.000-04:00">DRAFT</status_change>
            <status_change date="2005-05-11T05:41:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-06-01T03:30:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criteria operator="OR" comment="Solaris 7 or 8 OR Solaris 9 and Remote Network Server Commands (SUNWrcmds) installed">
            <criteria operator="OR" comment="Solaris 7 or 8 installed">
              <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
              <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            </criteria>
            <criteria operator="AND" comment="Solaris 9 and Remote Network Server Commands (SUNWrcmds) installed">
              <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
              <criterion comment="Remote Network Server Commands - Usr (SUNWrcmds) installed" negate="false" test_ref="oval:org.mitre.oval:tst:2525"/>
            </criteria>
          </criteria>
          <criterion comment="Patch 118239-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2524"/>
          <criterion comment="Patch 116984-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2523"/>
          <criterion comment="Patch 117455-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2522"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="in.rwhod is running" negate="false" test_ref="oval:org.mitre.oval:tst:2521"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:62" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 mibiisa Remote Buffer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>mibiisa</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0797" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0797"/>
        <description>Buffer overflow in the MIB parsing component of mibiisa for Solaris 5.6 through 8 allows remote attackers to gain root privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-10-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File mibiisa exists" negate="false" test_ref="oval:org.mitre.oval:tst:2995"/>
          <criterion comment="Patch 107709-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2994"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="mibiisa running" negate="false" test_ref="oval:org.mitre.oval:tst:2993"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:65" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 kcms_configure Command-Line Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>kcms_configure</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0594" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0594"/>
        <description>kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File kcms_configure exists" negate="false" test_ref="oval:org.mitre.oval:tst:3144"/>
          <criterion comment="Patch 107337-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2989"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File kcms_configure executable and SUID or SGID">
            <criterion comment="File kcms_configure executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:3143"/>
            <criteria operator="OR" comment="File kcms_configure executable and SUID or SGID">
              <criterion comment="File kcms_configure executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:3142"/>
              <criterion comment="File kcms_configure executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:3141"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:7" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 kcms_configure Command-Line Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>kcms_configure</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0594" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0594"/>
        <description>kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File kcms_configure exists" negate="false" test_ref="oval:org.mitre.oval:tst:3144"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File kcms_configure executable and SUID or SGID">
            <criterion comment="File kcms_configure executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:3143"/>
            <criteria operator="OR" comment="File kcms_configure executable and SUID or SGID">
              <criterion comment="File kcms_configure executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:3142"/>
              <criterion comment="File kcms_configure executable and SUID or SGID" negate="false" test_ref="oval:org.mitre.oval:tst:3141"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:79" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 RWall Daemon Syslog Format String Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>rpc.rwalld</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0573" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0573"/>
        <description>Format string vulnerability in RPC wall daemon (rpc.rwalld) for Solaris 2.5.1 through 8 allows remote attackers to execute arbitrary code via format strings in a message that is not properly provided to the syslog function when the wall command cannot be executed.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File rpc.rwalld exists" negate="false" test_ref="oval:org.mitre.oval:tst:3032"/>
          <criterion comment="Patch 112846-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2970"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.rwalld" negate="false" test_ref="oval:org.mitre.oval:tst:3030"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File rpc.rwalld executable">
            <criterion comment="File rpc.rwalld executable" negate="false" test_ref="oval:org.mitre.oval:tst:3029"/>
            <criterion comment="File rpc.rwalld executable" negate="false" test_ref="oval:org.mitre.oval:tst:3028"/>
            <criterion comment="File rpc.rwalld executable" negate="false" test_ref="oval:org.mitre.oval:tst:3027"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:80" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 CDE ToolTalk Database Symbolic Link Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0678" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0678"/>
        <description>CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-29T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File rpc.ttdbserverd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3105"/>
          <criterion comment="Patch 107893-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2969"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File rpc.ttdbserverd executable">
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3102"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3101"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3100"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:86" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 LBXProxy Display Name Buffer Overflow</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>lbxproxy</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0090" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0090"/>
        <description>Buffer overflow in Low BandWidth X proxy (lbxproxy) in Solaris 8 allows local users to execute arbitrary code via a long display command line option.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-08-30T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File lbxproxy exists" negate="false" test_ref="oval:org.mitre.oval:tst:2964"/>
          <criterion comment="Patch 108652-51 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2963"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criteria operator="AND" comment="File lbxproxy SGID and executable">
            <criterion comment="File lbxproxy SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:2962"/>
            <criterion comment="File lbxproxy SGID and executable" negate="false" test_ref="oval:org.mitre.oval:tst:2961"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:868" version="1" class="vulnerability">
      <metadata>
        <title>Linux Kernel eflags Checking Privilege Escalation Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Linux kernel</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0001" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0001"/>
        <description>Unknown vulnerability in the eflags checking in the 32-bit ptrace emulation for the Linux kernel on AMD64 systems allows local users to gain privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:1547"/>
        <criterion comment="kernel version is less than 2.4.21-9.EL" negate="false" test_ref="oval:org.mitre.oval:tst:1546"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:869" version="1" class="vulnerability">
      <metadata>
        <title>Net-SNMP MIB Information Disclosure Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>Net-SNMP</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0935" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0935"/>
        <description>Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
          <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
          <criterion comment="net-snmp version is less than 5.0.9-2.30E.1" negate="false" test_ref="oval:org.mitre.oval:tst:1545"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="snmpd is listening to the network" negate="false" test_ref="oval:org.mitre.oval:tst:1544"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:870" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 OpenSSL do_change_cipher_spec Function Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0079" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0079"/>
        <description>The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="openssl version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1543"/>
        <criterion comment="openssl-devel version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1542"/>
        <criterion comment="openssl-perl version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1541"/>
        <criterion comment="openssl096b version is less than 0.9.6b-16" negate="false" test_ref="oval:org.mitre.oval:tst:1540"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:871" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 OpenSSL Improper Unknown Message Handling Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0081" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0081"/>
        <description>OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <modified date="2004-05-11T12:00:00.000-04:00" comment="Corrected pattern used in rrt-206">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="openssl version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1543"/>
        <criterion comment="openssl-devel version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1542"/>
        <criterion comment="openssl-perl version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1541"/>
        <criterion comment="openssl096b version is less than 0.9.6b-16" negate="false" test_ref="oval:org.mitre.oval:tst:1540"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:902" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat OpenSSL Improper Unknown Message Handling Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0081" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0081"/>
        <description>OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="openssl version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1484"/>
        <criterion comment="openssl-devel version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1483"/>
        <criterion comment="openssl-perl version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1482"/>
        <criterion comment="openssl096 version is less than 0.9.6-25.9" negate="false" test_ref="oval:org.mitre.oval:tst:1481"/>
        <criterion comment="openssl096b version is less than 0.9.6b-15" negate="false" test_ref="oval:org.mitre.oval:tst:1480"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:91" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 7 CDE ToolTalk Database Null Write Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 7</platform>
          <product>CDE</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0677" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0677"/>
        <description>CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.</description>
        <oval_repository>
          <dates>
            <submitted date="2003-01-31T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 7 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3045"/>
          <criterion comment="File rpc.ttdbserverd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3105"/>
          <criterion comment="Patch 107893-19 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2969"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains rpc.ttdbserverd" negate="false" test_ref="oval:org.mitre.oval:tst:3103"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File rpc.ttdbserverd executable">
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3102"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3101"/>
            <criterion comment="File rpc.ttdbserverd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3100"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:928" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat Enterprise 3 OpenSSL Kerberos Handshake Vulnerability</title>
        <affected family="unix">
          <platform>Red Hat Enterprise Linux 3</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0112" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0112"/>
        <description>The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat Enterprise 3 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:2861"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="openssl version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1543"/>
        <criterion comment="openssl-devel version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1542"/>
        <criterion comment="openssl-perl version is less than 0.9.7a-33.4" negate="false" test_ref="oval:org.mitre.oval:tst:1541"/>
        <criterion comment="openssl096b version is less than 0.9.6b-16" negate="false" test_ref="oval:org.mitre.oval:tst:1540"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:94" version="1" class="vulnerability">
      <metadata>
        <title>Solaris 8 mibiisa Remote Buffer Overflow Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>mibiisa</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0797" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0797"/>
        <description>Buffer overflow in the MIB parsing component of mibiisa for Solaris 5.6 through 8 allows remote attackers to gain root privileges.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-25T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
          <criterion comment="File mibiisa exists" negate="false" test_ref="oval:org.mitre.oval:tst:2995"/>
          <criterion comment="Patch 108869-16 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3125"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="mibiisa running" negate="false" test_ref="oval:org.mitre.oval:tst:2993"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:97" version="1" class="vulnerability">
      <metadata>
        <title>Solaris cachefsd Buffer Overrun Vulnerability</title>
        <affected family="unix">
          <platform>Sun Solaris 8</platform>
          <product>cachefsd</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0084" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0084"/>
        <description>Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.</description>
        <oval_repository>
          <dates>
            <submitted date="2002-09-17T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">David Proulx</contributor>
            </submitted>
            <modified date="2005-01-27T12:00:00.000-04:00" comment="Updated to add patch test">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <modified date="2005-01-28T12:00:00.000-04:00" comment="Added Solaris 9 and Solaris 9 patch test to the definition">
              <contributor organization="The MITRE Corporation">Brian Soby</contributor>
            </modified>
            <status_change date="2005-02-01T08:28:00.000-04:00">INTERIM</status_change>
            <status_change date="2005-02-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND">
        <criteria comment="Software section" operator="AND">
          <criterion comment="File cachefsd exists" negate="false" test_ref="oval:org.mitre.oval:tst:3053"/>
          <criteria operator="OR" comment="Solaris 8 or 9 installed">
            <criterion comment="Solaris 8 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3145"/>
            <criterion comment="Solaris 9 Installed" negate="false" test_ref="oval:org.mitre.oval:tst:3051"/>
          </criteria>
          <criterion comment="Patch 110896-02 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:2946"/>
          <criterion comment="Patch 114008-01 or later installed" negate="true" test_ref="oval:org.mitre.oval:tst:3050"/>
        </criteria>
        <criteria comment="Configuration section" operator="AND">
          <criterion comment="inetd.conf contains cachefsd" negate="false" test_ref="oval:org.mitre.oval:tst:3049"/>
          <criterion comment="inetd running" negate="false" test_ref="oval:org.mitre.oval:tst:3135"/>
          <criteria operator="OR" comment="File cachefsd executable">
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3048"/>
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3047"/>
            <criterion comment="File cachefsd executable" negate="false" test_ref="oval:org.mitre.oval:tst:3046"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:975" version="1" class="vulnerability">
      <metadata>
        <title>Red Hat OpenSSL do_change_cipher_spec Function Denial of Service</title>
        <affected family="unix">
          <platform>Red Hat Linux 9</platform>
          <product>OpenSSL</product>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0079" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0079"/>
        <description>The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2004-03-20T12:00:00.000-04:00">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </submitted>
            <modified date="2004-05-05T12:00:00.000-04:00" comment="Corrected syntax errors in sql verion of the definition.">
              <contributor organization="The MITRE Corporation">Matt Busby</contributor>
            </modified>
            <status_change date="2004-05-25T12:00:00.000-04:00">INTERIM</status_change>
            <status_change date="2004-06-16T12:00:00.000-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria comment="Software section" operator="AND">
        <criterion comment="Red Hat 9 is installed" negate="false" test_ref="oval:org.mitre.oval:tst:3153"/>
        <criterion comment="ix86 architecture" negate="false" test_ref="oval:org.mitre.oval:tst:3152"/>
        <criterion comment="openssl version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1484"/>
        <criterion comment="openssl-devel version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1483"/>
        <criterion comment="openssl-perl version is less than 0.9.7a-20" negate="false" test_ref="oval:org.mitre.oval:tst:1482"/>
        <criterion comment="openssl096 version is less than 0.9.6-25.9" negate="false" test_ref="oval:org.mitre.oval:tst:1481"/>
        <criterion comment="openssl096b version is less than 0.9.6b-15" negate="false" test_ref="oval:org.mitre.oval:tst:1480"/>
      </criteria>
    </definition>
  </definitions>
  <tests>
    <patch_test id="oval:org.mitre.oval:tst:497" version="1" check="all" comment="Patch 112604-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:427"/>
      <state state_ref="oval:org.mitre.oval:ste:456"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:496" version="1" check="all" comment="Patch 112609-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:426"/>
      <state state_ref="oval:org.mitre.oval:ste:455"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:495" version="1" check="all" comment="Patch 115172-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:425"/>
      <state state_ref="oval:org.mitre.oval:ste:454"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:494" version="2" check="all" comment="Lance Ethernet (le) interface configured to start" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:424"/>
    </file_test>
    <unknown_test id="oval:org.mitre.oval:tst:493" version="1" comment="Lance Ethernet interface in use" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <oval-def:notes>
        <oval-def:note/>
      </oval-def:notes>
    </unknown_test>
    <patch_test id="oval:org.mitre.oval:tst:3042" version="1" check="at least one" comment="Patch 111600-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1741"/>
      <state state_ref="oval:org.mitre.oval:ste:2849"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:426" version="1" check="at least one" comment="Patch 113073-13 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:376"/>
      <state state_ref="oval:org.mitre.oval:ste:393"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:425" version="1" check="at least one" comment="Solaris Volume Manager package installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:375"/>
    </package_test>
    <file_test id="oval:org.mitre.oval:tst:424" version="2" check="at least one" comment="svm.init init script exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:374"/>
    </file_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:423" version="2" check="all" comment="/etc/vfstab is configured with SVM devices" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:373"/>
    </textfilecontent_test>
    <file_test id="oval:org.mitre.oval:tst:3043" version="2" check="at least one" comment="File whodo exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1742"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3041" version="2" check="at least one" comment="File whodo SUID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1742"/>
      <state state_ref="oval:org.mitre.oval:ste:2848"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3040" version="2" check="at least one" comment="File whodo oexec set" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1742"/>
      <state state_ref="oval:org.mitre.oval:ste:2847"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:3018" version="1" check="at least one" comment="Patch 111826-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1727"/>
      <state state_ref="oval:org.mitre.oval:ste:2826"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2464" version="1" check="at least one" comment="Patch 109320-17 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:315"/>
      <state state_ref="oval:org.mitre.oval:ste:2308"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2462" version="1" check="at least one" comment="Patch 109321-17 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1398"/>
      <state state_ref="oval:org.mitre.oval:ste:2306"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2461" version="1" check="at least one" comment="Patch 113329-16 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:314"/>
      <state state_ref="oval:org.mitre.oval:ste:2305"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2460" version="1" check="at least one" comment="Patch 114980-17 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1397"/>
      <state state_ref="oval:org.mitre.oval:ste:2304"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2458" version="1" check="at least one" comment="Patch 120467-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1396"/>
      <state state_ref="oval:org.mitre.oval:ste:2302"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2457" version="1" check="at least one" comment="Patch 120468-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1395"/>
      <state state_ref="oval:org.mitre.oval:ste:2301"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:2456" version="2" check="at least one" comment="Target is configured as a print server" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1394"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:2987" version="1" check="at least one" comment="Patch 110453-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1708"/>
      <state state_ref="oval:org.mitre.oval:ste:2800"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:3017" version="2" check="at least one" comment="File admintool exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1726"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3016" version="2" check="at least one" comment="File admintool SUID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1726"/>
      <state state_ref="oval:org.mitre.oval:ste:2825"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:2986" version="1" check="at least one" comment="Patch 108721-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1707"/>
      <state state_ref="oval:org.mitre.oval:ste:2799"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:1433" version="1" check="at least one" comment="/bin/mount is world-executable AND Set-UID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:977"/>
      <state state_ref="oval:org.mitre.oval:ste:1292"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1432" version="1" check="at least one" comment="/bin/mount is world-executable AND Set-UID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:977"/>
      <state state_ref="oval:org.mitre.oval:ste:1291"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1042" version="2" check="all" comment="gedit RPM earlier than 1:2.2.2-4rhel3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:761"/>
      <state state_ref="oval:org.mitre.oval:ste:929"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1041" version="1" check="all" comment="/usr/bin/gedit is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:760"/>
      <state state_ref="oval:org.mitre.oval:ste:928"/>
    </file_test>
    <package_test id="oval:org.mitre.oval:tst:1024" version="1" check="at least one" comment="System and Network Administration Framework Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:752"/>
    </package_test>
    <inetd_test id="oval:org.mitre.oval:tst:1023" version="1" check="at least one" comment="inetd.conf contains sadmind" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:751"/>
      <state state_ref="oval:org.mitre.oval:ste:913"/>
    </inetd_test>
    <patch_test id="oval:org.mitre.oval:tst:1022" version="1" check="at least one" comment="Patch 116457-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:750"/>
      <state state_ref="oval:org.mitre.oval:ste:912"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1021" version="1" check="at least one" comment="Patch 116442-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:749"/>
      <state state_ref="oval:org.mitre.oval:ste:911"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1020" version="2" check="at least one" comment="Patch 116454-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:748"/>
      <state state_ref="oval:org.mitre.oval:ste:910"/>
    </patch_test>
    <inetd_test id="oval:org.mitre.oval:tst:1019" version="1" check="at least one" comment="Sadmin called using strong authentication" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:747"/>
      <state state_ref="oval:org.mitre.oval:ste:909"/>
    </inetd_test>
    <file_test id="oval:org.mitre.oval:tst:939" version="1" check="at least one" comment="File /usr/dt/bin/dtlogin exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:703"/>
    </file_test>
    <process_test id="oval:org.mitre.oval:tst:938" version="1" check="at least one" comment="dtlogin running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:702"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:937" version="3" check="at least one" comment="Patch 108919-21 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:701"/>
      <state state_ref="oval:org.mitre.oval:ste:841"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:936" version="1" check="at least one" comment="Patch 112807-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:700"/>
      <state state_ref="oval:org.mitre.oval:ste:840"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:935" version="1" check="at least one" comment="Patch 107180-31 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:699"/>
      <state state_ref="oval:org.mitre.oval:ste:839"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2982" version="1" check="at least one" comment="Patch 108949-07 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:256"/>
      <state state_ref="oval:org.mitre.oval:ste:2796"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:2983" version="1" check="at least one" comment="File dtspcd exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1703"/>
    </file_test>
    <inetd_test id="oval:org.mitre.oval:tst:2981" version="1" check="at least one" comment="inetd.conf contains dtspcd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1704"/>
      <state state_ref="oval:org.mitre.oval:ste:2795"/>
    </inetd_test>
    <file_test id="oval:org.mitre.oval:tst:2980" version="1" check="at least one" comment="File dtspcd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1703"/>
      <state state_ref="oval:org.mitre.oval:ste:2794"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2979" version="1" check="at least one" comment="File dtspcd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1703"/>
      <state state_ref="oval:org.mitre.oval:ste:2793"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2978" version="1" check="at least one" comment="File dtspcd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1703"/>
      <state state_ref="oval:org.mitre.oval:ste:2792"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:2974" version="1" check="at least one" comment="Patch 106934-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1701"/>
      <state state_ref="oval:org.mitre.oval:ste:2788"/>
    </patch_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1550" version="1" check="at least one" comment="kernel version is less than 2.4.21-4.0.2.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1042"/>
      <state state_ref="oval:org.mitre.oval:ste:1404"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1549" version="1" check="at least one" comment="kernel-smp version is less than 2.4.21-4.0.2.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1041"/>
      <state state_ref="oval:org.mitre.oval:ste:1403"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1548" version="1" check="at least one" comment="kernel-bigmem version is less than 2.4.21-4.0.2.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1040"/>
      <state state_ref="oval:org.mitre.oval:ste:1402"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1327" version="1" check="at least one" comment="squirrelmail rpm version prior to 1.4.3-0.e3.1 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:920"/>
      <state state_ref="oval:org.mitre.oval:ste:1191"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1326" version="1" check="at least one" comment="php rpm is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:919"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1325" version="1" check="at least one" comment="/etc/httpd/modules/libphp4.so exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:918"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1315" version="1" check="at least one" comment="kernel version is less than 2.4.21-15.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:915"/>
      <state state_ref="oval:org.mitre.oval:ste:1181"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1262" version="1" check="all" comment="fetchmail RPM older than 0:6.2.0-3.el3.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:880"/>
      <state state_ref="oval:org.mitre.oval:ste:1132"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1255" version="1" check="at least one" comment="cvs version is less than 1.11.2-18" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:877"/>
      <state state_ref="oval:org.mitre.oval:ste:1125"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1223" version="1" check="at least one" comment="openoffice version is less than 1.1.0-15.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:857"/>
      <state state_ref="oval:org.mitre.oval:ste:1095"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1222" version="1" check="at least one" comment="/usr/bin/oocalc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:856"/>
      <state state_ref="oval:org.mitre.oval:ste:1094"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1221" version="1" check="at least one" comment="/usr/bin/oocalc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:856"/>
      <state state_ref="oval:org.mitre.oval:ste:1093"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1220" version="1" check="at least one" comment="/usr/bin/oocalc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:856"/>
      <state state_ref="oval:org.mitre.oval:ste:1092"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1219" version="1" check="at least one" comment="/usr/bin/oodraw is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:855"/>
      <state state_ref="oval:org.mitre.oval:ste:1091"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1218" version="1" check="at least one" comment="/usr/bin/oodraw is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:855"/>
      <state state_ref="oval:org.mitre.oval:ste:1090"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1217" version="1" check="at least one" comment="/usr/bin/oodraw is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:855"/>
      <state state_ref="oval:org.mitre.oval:ste:1089"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1216" version="1" check="at least one" comment="/usr/bin/ooffice is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:854"/>
      <state state_ref="oval:org.mitre.oval:ste:1088"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1215" version="1" check="at least one" comment="/usr/bin/ooffice is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:854"/>
      <state state_ref="oval:org.mitre.oval:ste:1087"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1214" version="1" check="at least one" comment="/usr/bin/ooffice is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:854"/>
      <state state_ref="oval:org.mitre.oval:ste:1086"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1213" version="1" check="at least one" comment="/usr/bin/ooimpress is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:853"/>
      <state state_ref="oval:org.mitre.oval:ste:1085"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1212" version="1" check="at least one" comment="/usr/bin/ooimpress is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:853"/>
      <state state_ref="oval:org.mitre.oval:ste:1084"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1211" version="1" check="at least one" comment="/usr/bin/ooimpress is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:853"/>
      <state state_ref="oval:org.mitre.oval:ste:1083"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1210" version="1" check="at least one" comment="/usr/bin/oowriter is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:852"/>
      <state state_ref="oval:org.mitre.oval:ste:1082"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1209" version="1" check="at least one" comment="/usr/bin/oowriter is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:852"/>
      <state state_ref="oval:org.mitre.oval:ste:1081"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1208" version="1" check="at least one" comment="/usr/bin/oowriter is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:852"/>
      <state state_ref="oval:org.mitre.oval:ste:1080"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1183" version="1" check="all" comment="/usr/bin/bzgrep is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:838"/>
      <state state_ref="oval:org.mitre.oval:ste:1056"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1180" version="1" check="all" comment="rh-postgresql-contrib rpm is earlier than 0:7.3.10-1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:836"/>
      <state state_ref="oval:org.mitre.oval:ste:1053"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1179" version="1" check="all" comment="/usr/lib/pgsql/tsearch.so (PostgreSQL's tsearch module) exists as a regular file" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:835"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1162" version="1" check="all" comment="/usr/bin/zgrep is executable by any user" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:829"/>
      <state state_ref="oval:org.mitre.oval:ste:1037"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2939" version="1" check="at least one" comment="evolution version is less than 1.2.2-5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1680"/>
      <state state_ref="oval:org.mitre.oval:ste:2754"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1261" version="1" check="all" comment="/usr/bin/fetchmail is executable by any user" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:879"/>
      <state state_ref="oval:org.mitre.oval:ste:1131"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1144" version="1" check="all" comment="fetchmail RPM earlier than 0:6.2.5-6.el4.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:819"/>
      <state state_ref="oval:org.mitre.oval:ste:1024"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1131" version="1" check="all" comment="telnet RPM earlier than 1:0.17-20.EL3.3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:815"/>
      <state state_ref="oval:org.mitre.oval:ste:1012"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1130" version="1" check="all" comment="/usr/bin/telnet is executable by any user" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:814"/>
      <state state_ref="oval:org.mitre.oval:ste:1011"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1102" version="1" check="all" comment="libxml RPM is earlier than 1:1.8.17-9.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:800"/>
      <state state_ref="oval:org.mitre.oval:ste:984"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1101" version="1" check="all" comment="libxml-devel RPM is earlier than 1:1.8.17-9.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:799"/>
      <state state_ref="oval:org.mitre.oval:ste:983"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1148" version="1" check="all" comment="kernel RPM earlier than 0:2.4.21-32.0.1.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:822"/>
      <state state_ref="oval:org.mitre.oval:ste:1028"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1147" version="1" check="all" comment="kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:821"/>
      <state state_ref="oval:org.mitre.oval:ste:1027"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1146" version="1" check="all" comment="kernel-smp RPM earlier than 0:2.4.21-32.0.1.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:820"/>
      <state state_ref="oval:org.mitre.oval:ste:1026"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1046" version="1" check="all" comment="sudo RPM earlier than 0:1.6.7p5-1.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:764"/>
      <state state_ref="oval:org.mitre.oval:ste:932"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1045" version="1" check="at least one" comment="/etc/sudoers exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:763"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1044" version="1" check="all" comment="/usr/bin/sudo is executable by everyone" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:762"/>
      <state state_ref="oval:org.mitre.oval:ste:931"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1085" version="1" check="all" comment="libgd RPM is earlier than 0:1.8.4-12.3.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:792"/>
      <state state_ref="oval:org.mitre.oval:ste:967"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1084" version="1" check="all" comment="libgd-devel RPM is earlier than 0:1.8.4-12.3.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:791"/>
      <state state_ref="oval:org.mitre.oval:ste:966"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2936" version="1" check="at least one" comment="gdm version is less than 2.4.1.3-5.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1677"/>
      <state state_ref="oval:org.mitre.oval:ste:2751"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2911" version="1" check="at least one" comment="ghostscript version is less than 7.05-32.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1668"/>
      <state state_ref="oval:org.mitre.oval:ste:2727"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2910" version="1" check="at least one" comment="/usr/bin/gs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1667"/>
      <state state_ref="oval:org.mitre.oval:ste:2726"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2909" version="1" check="at least one" comment="/usr/bin/gs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1667"/>
      <state state_ref="oval:org.mitre.oval:ste:2725"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2908" version="1" check="at least one" comment="/usr/bin/gs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1667"/>
      <state state_ref="oval:org.mitre.oval:ste:2724"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:974" version="1" check="all" comment="FreeRADIUS rpm older than 1.0.1-1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:722"/>
      <state state_ref="oval:org.mitre.oval:ste:873"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:973" version="1" check="all" comment="radiusd is listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:721"/>
      <state state_ref="oval:org.mitre.oval:ste:872"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2901" version="1" check="at least one" comment="gnupg version is less than 1.2.1-4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1665"/>
      <state state_ref="oval:org.mitre.oval:ste:2717"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2900" version="1" check="at least one" comment="/usr/bin/gnupg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1664"/>
      <state state_ref="oval:org.mitre.oval:ste:2716"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2899" version="1" check="at least one" comment="/usr/bin/gnupg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1664"/>
      <state state_ref="oval:org.mitre.oval:ste:2715"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2897" version="1" check="at least one" comment="gtkhtml version is less than 1.1.9-0.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1663"/>
      <state state_ref="oval:org.mitre.oval:ste:2713"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2877" version="1" check="at least one" comment="gtkhtml version is less than 1.1.9-0.9.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1650"/>
      <state state_ref="oval:org.mitre.oval:ste:2693"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2876" version="1" check="at least one" comment="/usr/bin/evolution is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1649"/>
      <state state_ref="oval:org.mitre.oval:ste:2692"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2875" version="1" check="at least one" comment="/usr/bin/evolution is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1649"/>
      <state state_ref="oval:org.mitre.oval:ste:2691"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2874" version="1" check="at least one" comment="/usr/bin/evolution is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1649"/>
      <state state_ref="oval:org.mitre.oval:ste:2690"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2866" version="1" check="at least one" comment="httpd version is less than 2.0.40-21.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1644"/>
      <state state_ref="oval:org.mitre.oval:ste:2684"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2860" version="1" check="all" comment="openssl-perl is older than 0.9.7a-33.15" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1639"/>
      <state state_ref="oval:org.mitre.oval:ste:2678"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2859" version="1" check="all" comment="openssl-devel older than 0.9.7a-33.15" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1638"/>
      <state state_ref="oval:org.mitre.oval:ste:2677"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2858" version="1" check="all" comment="openssl older than 0.9.7a-33.15" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1637"/>
      <state state_ref="oval:org.mitre.oval:ste:2676"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2857" version="1" check="all" comment="openssl096b package is older than 0.9.6b-16.22.3.i386.rpm" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1636"/>
      <state state_ref="oval:org.mitre.oval:ste:2675"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2865" version="1" check="at least one" comment="httpd listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1643"/>
      <state state_ref="oval:org.mitre.oval:ste:2683"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2852" version="1" check="at least one" comment="httpd version is less than 2.0.40-21.5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1634"/>
      <state state_ref="oval:org.mitre.oval:ste:2670"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:3151" version="1" check="at least one" comment="balsa version is less than 2.0.6-2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1791"/>
      <state state_ref="oval:org.mitre.oval:ste:2947"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:3150" version="1" check="at least one" comment="/usr/bin/balsa is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1790"/>
      <state state_ref="oval:org.mitre.oval:ste:2946"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3149" version="1" check="at least one" comment="/usr/bin/balsa is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1790"/>
      <state state_ref="oval:org.mitre.oval:ste:2945"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3148" version="1" check="at least one" comment="/usr/bin/balsa is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1790"/>
      <state state_ref="oval:org.mitre.oval:ste:2944"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2826" version="1" check="at least one" comment="kdebase version is less than 3.1-15" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1619"/>
      <state state_ref="oval:org.mitre.oval:ste:2646"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2825" version="1" check="at least one" comment="/usr/bin/kdm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1618"/>
      <state state_ref="oval:org.mitre.oval:ste:2645"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2824" version="1" check="at least one" comment="/usr/bin/kdm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1618"/>
      <state state_ref="oval:org.mitre.oval:ste:2644"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2823" version="1" check="at least one" comment="/usr/bin/kdm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1618"/>
      <state state_ref="oval:org.mitre.oval:ste:2643"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2785" version="1" check="at least one" comment="krb5-server version is less than 1.2.7-14" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1597"/>
      <state state_ref="oval:org.mitre.oval:ste:2606"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2756" version="1" check="at least one" comment="krb5-libs version is less than 1.2.7-14" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1582"/>
      <state state_ref="oval:org.mitre.oval:ste:2577"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2755" version="1" check="at least one" comment="krb5-workstation version is less than 1.2.7-14" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1581"/>
      <state state_ref="oval:org.mitre.oval:ste:2576"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2753" version="1" check="at least one" comment="kernel version = 2.4.20-6" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1579"/>
      <state state_ref="oval:org.mitre.oval:ste:2574"/>
    </rpminfo_test>
    <uname_test id="oval:org.mitre.oval:tst:2752" version="1" check="at least one" comment="kernel 2.4.20-6 or earlier is running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2573"/>
    </uname_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:3061" version="1" check="at least one" comment="ddskk version is less than 11.6.0-11.90" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1751"/>
      <state state_ref="oval:org.mitre.oval:ste:2866"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:3060" version="1" check="at least one" comment="ddskk-xemacs version is less than 11.6.0-11.90" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1750"/>
      <state state_ref="oval:org.mitre.oval:ste:2865"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2721" version="1" check="at least one" comment="kernel version is less than 2.4.20-18.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1565"/>
      <state state_ref="oval:org.mitre.oval:ste:2542"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:476" version="1" check="at least one" comment="kernel rpm older than 2.4.21-15.0.2.EL Epoch 0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:410"/>
      <state state_ref="oval:org.mitre.oval:ste:440"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:475" version="1" check="at least one" comment="kernel-hugemem rpm older than 2.4.21-15.0.2.EL Epoch 0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:409"/>
      <state state_ref="oval:org.mitre.oval:ste:439"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:474" version="1" check="at least one" comment="kernel-smp rpm older than 2.4.21-15.0.2.EL Epoch 0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:408"/>
      <state state_ref="oval:org.mitre.oval:ste:438"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2856" version="1" check="all" comment="/tmp is writable by everyone" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1420"/>
      <state state_ref="oval:org.mitre.oval:ste:2674"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2687" version="1" check="all" comment="php RPM prior to  0:4.3.2-24.ent" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1542"/>
      <state state_ref="oval:org.mitre.oval:ste:2509"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2684" version="1" check="all" comment="/etc/httpd/conf.d/php.conf exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1540"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2683" version="1" check="all" comment="cpio rpm is older than 0:2.5-4.RHEL3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1539"/>
      <state state_ref="oval:org.mitre.oval:ste:2506"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2682" version="1" check="all" comment="/bin/cpio is executable by all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1538"/>
      <state state_ref="oval:org.mitre.oval:ste:2505"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:388" version="1" check="at least one" comment="libpng rpm older than 1.2.2-24, Epoch 2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:349"/>
      <state state_ref="oval:org.mitre.oval:ste:364"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:387" version="1" check="at least one" comment="libpng-devel rpm older than 1.2.2-24, Epoch 2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:348"/>
      <state state_ref="oval:org.mitre.oval:ste:363"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:386" version="1" check="at least one" comment="libpng10-devel rpm older than 1.0.13-14, Epoch 0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:347"/>
      <state state_ref="oval:org.mitre.oval:ste:362"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:385" version="1" check="at least one" comment="libpng10 rpm older than 1.0.13-14, Epoch 0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:346"/>
      <state state_ref="oval:org.mitre.oval:ste:361"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2667" version="1" check="all" comment="gzip RPM earlier than 0:1.3.3-12rhel3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1529"/>
      <state state_ref="oval:org.mitre.oval:ste:2491"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2666" version="1" check="all" comment="/usr/bin/gzip is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1528"/>
      <state state_ref="oval:org.mitre.oval:ste:2490"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2665" version="1" check="all" comment="/usr/bin/gunzip is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1527"/>
      <state state_ref="oval:org.mitre.oval:ste:2489"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2742" version="1" check="at least one" comment="kernel version is less than 2.4.20-13.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1574"/>
      <state state_ref="oval:org.mitre.oval:ste:2563"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2709" version="1" check="at least one" comment="kernel version is less than 2.4.20-19.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1556"/>
      <state state_ref="oval:org.mitre.oval:ste:2530"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2656" version="1" check="at least one" comment="kdelibs version is less than 3.1-12" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1521"/>
      <state state_ref="oval:org.mitre.oval:ste:2481"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2647" version="1" check="at least one" comment="lprng version is less than 3.8.19-3.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1516"/>
      <state state_ref="oval:org.mitre.oval:ste:2473"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2646" version="1" check="at least one" comment="psbanner is world-executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1515"/>
      <state state_ref="oval:org.mitre.oval:ste:2472"/>
    </file_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2645" version="1" check="at least one" comment="lpd listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1514"/>
      <state state_ref="oval:org.mitre.oval:ste:2471"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2639" version="1" check="at least one" comment="lv version is less than 4.49.4-9.9.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1507"/>
      <state state_ref="oval:org.mitre.oval:ste:2466"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2638" version="1" check="at least one" comment="mutt version is less than 1.4.1-1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1506"/>
      <state state_ref="oval:org.mitre.oval:ste:2465"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2634" version="1" check="at least one" comment="mysql-server version is less than 3.23.56-1.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1504"/>
      <state state_ref="oval:org.mitre.oval:ste:2461"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2633" version="1" check="at least one" comment="mysqld is listening to the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1503"/>
      <state state_ref="oval:org.mitre.oval:ste:2460"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2631" version="1" check="at least one" comment="nfs-utils version is less than 1.0.1-3.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1502"/>
      <state state_ref="oval:org.mitre.oval:ste:2458"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2630" version="1" check="at least one" comment="rpc.mountd listens on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1501"/>
      <state state_ref="oval:org.mitre.oval:ste:2457"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2629" version="1" check="at least one" comment="openssh-server version is less than 3.5p1-6.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1500"/>
      <state state_ref="oval:org.mitre.oval:ste:2456"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2628" version="1" check="at least one" comment="sshd listens on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1499"/>
      <state state_ref="oval:org.mitre.oval:ste:2455"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2627" version="1" check="at least one" comment="openssh-server version is less than 3.5p1-11" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1498"/>
      <state state_ref="oval:org.mitre.oval:ste:2454"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2618" version="1" check="at least one" comment="openssl version is less than 0.9.7a-5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1492"/>
      <state state_ref="oval:org.mitre.oval:ste:2447"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2617" version="1" check="at least one" comment="openssl-devel version is less than 0.9.7a-5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1491"/>
      <state state_ref="oval:org.mitre.oval:ste:2446"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2616" version="1" check="at least one" comment="openssl-perl version is less than 0.9.7a-5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1490"/>
      <state state_ref="oval:org.mitre.oval:ste:2445"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2615" version="1" check="at least one" comment="openssl096 version is less than 0.9.6-17" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1489"/>
      <state state_ref="oval:org.mitre.oval:ste:2444"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2614" version="1" check="at least one" comment="openssl096b version is less than 0.9.6b-6" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1488"/>
      <state state_ref="oval:org.mitre.oval:ste:2443"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2608" version="1" check="at least one" comment="pam_smb version is less than 1.1.6-9.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1483"/>
      <state state_ref="oval:org.mitre.oval:ste:2437"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2607" version="1" check="at least one" comment="perl-CGI version is less than 2.81-88.3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1482"/>
      <state state_ref="oval:org.mitre.oval:ste:2436"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2592" version="1" check="at least one" comment="php version is less than 4.2.2-17.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1471"/>
      <state state_ref="oval:org.mitre.oval:ste:2425"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2587" version="1" check="at least one" comment="pine version is less than 4.44-19.90.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1468"/>
      <state state_ref="oval:org.mitre.oval:ste:2420"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2586" version="1" check="at least one" comment="/usr/bin/pine is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1467"/>
      <state state_ref="oval:org.mitre.oval:ste:2419"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2585" version="1" check="at least one" comment="/usr/bin/pine is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1467"/>
      <state state_ref="oval:org.mitre.oval:ste:2418"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2584" version="1" check="at least one" comment="/usr/bin/pine is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1467"/>
      <state state_ref="oval:org.mitre.oval:ste:2417"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:3011" version="1" check="at least one" comment="eog version is less than 2.2.0-2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1724"/>
      <state state_ref="oval:org.mitre.oval:ste:2820"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:3010" version="1" check="at least one" comment="eog is world-executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1723"/>
      <state state_ref="oval:org.mitre.oval:ste:2819"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3009" version="1" check="at least one" comment="eog is group-executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1723"/>
      <state state_ref="oval:org.mitre.oval:ste:2818"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3008" version="1" check="at least one" comment="eog is owner-executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1723"/>
      <state state_ref="oval:org.mitre.oval:ste:2817"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2578" version="1" check="at least one" comment="postfix version is less than 1.1.12-1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1466"/>
      <state state_ref="oval:org.mitre.oval:ste:2411"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2577" version="1" check="at least one" comment="smtpd listens on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1465"/>
      <state state_ref="oval:org.mitre.oval:ste:2410"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:3007" version="1" check="at least one" comment="ethereal version is less than 0.9.11-0.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1722"/>
      <state state_ref="oval:org.mitre.oval:ste:2816"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2565" version="1" check="at least one" comment="smbd listens on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1461"/>
      <state state_ref="oval:org.mitre.oval:ste:2398"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2566" version="1" check="at least one" comment="samba version is less than 2.2.7a-7.9.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1462"/>
      <state state_ref="oval:org.mitre.oval:ste:2399"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2559" version="1" check="at least one" comment="samba version is less than 2.2.7a-8.9.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1458"/>
      <state state_ref="oval:org.mitre.oval:ste:2393"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2557" version="1" check="at least one" comment="wl version is less than 2.10.1-1.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1456"/>
      <state state_ref="oval:org.mitre.oval:ste:2391"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2556" version="1" check="at least one" comment="wl-xemacs version is less than 2.10.1-1.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1455"/>
      <state state_ref="oval:org.mitre.oval:ste:2390"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2555" version="1" check="at least one" comment="/usr/bin/emacs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1454"/>
      <state state_ref="oval:org.mitre.oval:ste:2389"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2554" version="1" check="at least one" comment="/usr/bin/emacs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1454"/>
      <state state_ref="oval:org.mitre.oval:ste:2388"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2553" version="1" check="at least one" comment="/usr/bin/emacs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1454"/>
      <state state_ref="oval:org.mitre.oval:ste:2387"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2552" version="1" check="at least one" comment="/usr/bin/xemacs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1453"/>
      <state state_ref="oval:org.mitre.oval:ste:2386"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2551" version="1" check="at least one" comment="/usr/bin/xemacs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1453"/>
      <state state_ref="oval:org.mitre.oval:ste:2385"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2550" version="1" check="at least one" comment="/usr/bin/xemacs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1453"/>
      <state state_ref="oval:org.mitre.oval:ste:2384"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2549" version="1" check="at least one" comment="sendmail version is less than 8.12.8-5.90" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1452"/>
      <state state_ref="oval:org.mitre.oval:ste:2383"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2517" version="1" check="at least one" comment="sendmail version is less than 8.12.8-6.90" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1433"/>
      <state state_ref="oval:org.mitre.oval:ste:2357"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2516" version="1" check="at least one" comment="sendmail is listening to the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1432"/>
      <state state_ref="oval:org.mitre.oval:ste:2356"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:3147" version="1" check="at least one" comment="cups version is less than 1.1.17-13.3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1789"/>
      <state state_ref="oval:org.mitre.oval:ste:2943"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:3146" version="1" check="at least one" comment="cupsd listens on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1788"/>
      <state state_ref="oval:org.mitre.oval:ste:2942"/>
    </inetlisteningservers_test>
    <file_test id="oval:org.mitre.oval:tst:2548" version="1" check="at least one" comment="sendmail is Set-UID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1451"/>
      <state state_ref="oval:org.mitre.oval:ste:2382"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2547" version="1" check="at least one" comment="sendmail is Set-UID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1451"/>
      <state state_ref="oval:org.mitre.oval:ste:2381"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2546" version="1" check="at least one" comment="sendmail is Set-UID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1451"/>
      <state state_ref="oval:org.mitre.oval:ste:2380"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2545" version="1" check="at least one" comment="sendmail is Set-GID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1451"/>
      <state state_ref="oval:org.mitre.oval:ste:2379"/>
    </file_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2544" version="1" check="at least one" comment="sendmail listening" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1450"/>
      <state state_ref="oval:org.mitre.oval:ste:2378"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2518" version="1" check="at least one" comment="sendmail version is less than 8.12.8-9.90" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1434"/>
      <state state_ref="oval:org.mitre.oval:ste:2358"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2499" version="1" check="at least one" comment="squirrelmail version is less than 1.2.11-1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1424"/>
      <state state_ref="oval:org.mitre.oval:ste:2340"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2498" version="1" check="at least one" comment="unzip version is less than 5.50-33" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1423"/>
      <state state_ref="oval:org.mitre.oval:ste:2339"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2497" version="1" check="at least one" comment="/usr/bin/unzip is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1422"/>
      <state state_ref="oval:org.mitre.oval:ste:2338"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2496" version="1" check="at least one" comment="/usr/bin/unzip is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1422"/>
      <state state_ref="oval:org.mitre.oval:ste:2337"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2495" version="1" check="at least one" comment="/usr/bin/unzip is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1422"/>
      <state state_ref="oval:org.mitre.oval:ste:2336"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2494" version="1" check="all" comment="sysreport RPM earlier than 0:1.3.7.2-6" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1421"/>
      <state state_ref="oval:org.mitre.oval:ste:2335"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2493" version="1" check="all" comment="/tmp is world-writable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oval-def:notes>
        <oval-def:note>For "/tmp is readable by non-root users," use a compound test.</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:1420"/>
      <state state_ref="oval:org.mitre.oval:ste:2334"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2489" version="1" check="at least one" comment="up2date version is less than 3.1.23.1-5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1419"/>
      <state state_ref="oval:org.mitre.oval:ste:2331"/>
    </rpminfo_test>
    <process_test id="oval:org.mitre.oval:tst:2488" version="1" check="at least one" comment="rhnsd is running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1418"/>
    </process_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2487" version="1" check="at least one" comment="vsftpd version is less than 1.1.3-8" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1417"/>
      <state state_ref="oval:org.mitre.oval:ste:2330"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2486" version="1" check="at least one" comment="vsftpd is listening to the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1416"/>
      <state state_ref="oval:org.mitre.oval:ste:2329"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2474" version="1" check="all" comment="mikmod RPM prior to 0:3.1.6-22.EL3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1406"/>
      <state state_ref="oval:org.mitre.oval:ste:2318"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2473" version="1" check="all" comment="/usr/bin/mikmod is executable by any user" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1405"/>
      <state state_ref="oval:org.mitre.oval:ste:2317"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2467" version="1" check="at least one" comment="xinetd version is less than 2:2.3.11-1.9.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1400"/>
      <state state_ref="oval:org.mitre.oval:ste:2311"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2466" version="1" check="at least one" comment="xinetd is listening to the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1399"/>
      <state state_ref="oval:org.mitre.oval:ste:2310"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2455" version="1" check="at least one" comment="xpdf version is less than 2.0.1-11" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1393"/>
      <state state_ref="oval:org.mitre.oval:ste:2300"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2454" version="1" check="at least one" comment="xpdf is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1392"/>
      <state state_ref="oval:org.mitre.oval:ste:2299"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2453" version="1" check="at least one" comment="xpdf is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1392"/>
      <state state_ref="oval:org.mitre.oval:ste:2298"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2452" version="1" check="at least one" comment="xpdf is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1392"/>
      <state state_ref="oval:org.mitre.oval:ste:2297"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2451" version="1" check="at least one" comment="ypserv version is less than 2.8-0.9E" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1391"/>
      <state state_ref="oval:org.mitre.oval:ste:2296"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2450" version="1" check="at least one" comment="ypserv is listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1390"/>
      <state state_ref="oval:org.mitre.oval:ste:2295"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2433" version="1" check="all" comment="rh-postgresql-server is earlier than 0:7.3.10-1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1384"/>
      <state state_ref="oval:org.mitre.oval:ste:2279"/>
    </rpminfo_test>
    <process_test id="oval:org.mitre.oval:tst:2432" version="1" check="all" comment="postmaster (the PostgreSQL master daemon) is running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1383"/>
    </process_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2401" version="1" check="all" comment="ImageMagick RPM earlier than 0:5.5.6-14" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <oval-def:notes>
        <oval-def:note>The ImageMagick-devel, ImageMagick-c++-devel, and ImageMagick-c++ RPMs all require that the exact same version of the ImageMagick RPM is present.  As such, we can test for a vulnerable version of the former alone, rather than testing for the presence of each of these RPMs in particular.</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:1371"/>
      <state state_ref="oval:org.mitre.oval:ste:2249"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2394" version="1" check="all" comment="gftp rpm is earlier than 1:2.0.14-4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1369"/>
      <state state_ref="oval:org.mitre.oval:ste:2242"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2393" version="1" check="all" comment="gftp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1368"/>
      <state state_ref="oval:org.mitre.oval:ste:2241"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2740" version="1" check="all" comment="gaim RPM earlier than 1:1.3.1-0.el3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1573"/>
      <state state_ref="oval:org.mitre.oval:ste:2561"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2739" version="1" check="all" comment="/usr/bin/gaim is executable by any user" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1099"/>
      <state state_ref="oval:org.mitre.oval:ste:2560"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2386" version="1" check="all" comment="bzip2 RPM earlier than 0:1.0.2-11.EL3.4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1363"/>
      <state state_ref="oval:org.mitre.oval:ste:2235"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2385" version="1" check="all" comment="/usr/bin/bzip2 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1362"/>
      <state state_ref="oval:org.mitre.oval:ste:2234"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2321" version="1" check="at least one" comment="pwlib version is less than 1.4.7-4.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1338"/>
      <state state_ref="oval:org.mitre.oval:ste:2173"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2319" version="1" check="at least one" comment="netpbm version is less than 9.24-10.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1336"/>
      <state state_ref="oval:org.mitre.oval:ste:2171"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2318" version="1" check="at least one" comment="netpbm-devel version is less than 9.24-10.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1335"/>
      <state state_ref="oval:org.mitre.oval:ste:2170"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2317" version="1" check="at least one" comment="netpbm-progs version is less than 9.24-10.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1334"/>
      <state state_ref="oval:org.mitre.oval:ste:2169"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2652" version="1" check="at least one" comment="Red Hat Enterprise 4 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1414"/>
      <state state_ref="oval:org.mitre.oval:ste:2477"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2651" version="1" check="all" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <oval-def:notes>
        <oval-def:note>Multiple RPMs were updated in this release, but all but mozilla-nspr have mozilla-with-their-same-version as an installation dependency.  So, if mozilla is up to date, mozilla-chat, mozilla-devel, ... , mozilla-js-debugger are all up to date.  Mozilla itself requires that mozilla-nspr and mozilla-nss be installed with the same version as itself.  This closes the loop -- if mozilla is up to date, so are the other mozilla-FOO RPMs.</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:1519"/>
      <state state_ref="oval:org.mitre.oval:ste:2476"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1641" version="1" check="at least one" comment="XFree86 version is less than 4.3.0-2.90.55" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1108"/>
      <state state_ref="oval:org.mitre.oval:ste:1493"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2316" version="1" check="at least one" comment="/usr/bin/411toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1333"/>
      <state state_ref="oval:org.mitre.oval:ste:2168"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2315" version="1" check="at least one" comment="/usr/bin/411toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1333"/>
      <state state_ref="oval:org.mitre.oval:ste:2167"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2314" version="1" check="at least one" comment="/usr/bin/411toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1333"/>
      <state state_ref="oval:org.mitre.oval:ste:2166"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2313" version="1" check="at least one" comment="/usr/bin/asciitopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1332"/>
      <state state_ref="oval:org.mitre.oval:ste:2165"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2312" version="1" check="at least one" comment="/usr/bin/asciitopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1332"/>
      <state state_ref="oval:org.mitre.oval:ste:2164"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2311" version="1" check="at least one" comment="/usr/bin/asciitopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1332"/>
      <state state_ref="oval:org.mitre.oval:ste:2163"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2310" version="1" check="at least one" comment="/usr/bin/atktopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1331"/>
      <state state_ref="oval:org.mitre.oval:ste:2162"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2309" version="1" check="at least one" comment="/usr/bin/atktopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1331"/>
      <state state_ref="oval:org.mitre.oval:ste:2161"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2308" version="1" check="at least one" comment="/usr/bin/atktopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1331"/>
      <state state_ref="oval:org.mitre.oval:ste:2160"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2307" version="1" check="at least one" comment="/usr/bin/bioradtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1330"/>
      <state state_ref="oval:org.mitre.oval:ste:2159"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2306" version="1" check="at least one" comment="/usr/bin/bioradtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1330"/>
      <state state_ref="oval:org.mitre.oval:ste:2158"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2305" version="1" check="at least one" comment="/usr/bin/bioradtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1330"/>
      <state state_ref="oval:org.mitre.oval:ste:2157"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2304" version="1" check="at least one" comment="/usr/bin/bmptoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1329"/>
      <state state_ref="oval:org.mitre.oval:ste:2156"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2303" version="1" check="at least one" comment="/usr/bin/bmptoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1329"/>
      <state state_ref="oval:org.mitre.oval:ste:2155"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2302" version="1" check="at least one" comment="/usr/bin/bmptoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1329"/>
      <state state_ref="oval:org.mitre.oval:ste:2154"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2301" version="1" check="at least one" comment="/usr/bin/brushtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1328"/>
      <state state_ref="oval:org.mitre.oval:ste:2153"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2300" version="1" check="at least one" comment="/usr/bin/brushtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1328"/>
      <state state_ref="oval:org.mitre.oval:ste:2152"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2299" version="1" check="at least one" comment="/usr/bin/brushtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1328"/>
      <state state_ref="oval:org.mitre.oval:ste:2151"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2298" version="1" check="at least one" comment="/usr/bin/cmuwmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1327"/>
      <state state_ref="oval:org.mitre.oval:ste:2150"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2297" version="1" check="at least one" comment="/usr/bin/cmuwmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1327"/>
      <state state_ref="oval:org.mitre.oval:ste:2149"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2296" version="1" check="at least one" comment="/usr/bin/cmuwmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1327"/>
      <state state_ref="oval:org.mitre.oval:ste:2148"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2295" version="1" check="at least one" comment="/usr/bin/eyuvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1326"/>
      <state state_ref="oval:org.mitre.oval:ste:2147"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2294" version="1" check="at least one" comment="/usr/bin/eyuvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1326"/>
      <state state_ref="oval:org.mitre.oval:ste:2146"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2293" version="1" check="at least one" comment="/usr/bin/eyuvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1326"/>
      <state state_ref="oval:org.mitre.oval:ste:2145"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2292" version="1" check="at least one" comment="/usr/bin/fiascotopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1325"/>
      <state state_ref="oval:org.mitre.oval:ste:2144"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2291" version="1" check="at least one" comment="/usr/bin/fiascotopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1325"/>
      <state state_ref="oval:org.mitre.oval:ste:2143"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2290" version="1" check="at least one" comment="/usr/bin/fiascotopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1325"/>
      <state state_ref="oval:org.mitre.oval:ste:2142"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2289" version="1" check="at least one" comment="/usr/bin/fitstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1324"/>
      <state state_ref="oval:org.mitre.oval:ste:2141"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2288" version="1" check="at least one" comment="/usr/bin/fitstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1324"/>
      <state state_ref="oval:org.mitre.oval:ste:2140"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2287" version="1" check="at least one" comment="/usr/bin/fitstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1324"/>
      <state state_ref="oval:org.mitre.oval:ste:2139"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2286" version="1" check="at least one" comment="/usr/bin/fstopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1323"/>
      <state state_ref="oval:org.mitre.oval:ste:2138"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2285" version="1" check="at least one" comment="/usr/bin/fstopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1323"/>
      <state state_ref="oval:org.mitre.oval:ste:2137"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2284" version="1" check="at least one" comment="/usr/bin/fstopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1323"/>
      <state state_ref="oval:org.mitre.oval:ste:2136"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2283" version="1" check="at least one" comment="/usr/bin/g3topbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1322"/>
      <state state_ref="oval:org.mitre.oval:ste:2135"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2282" version="1" check="at least one" comment="/usr/bin/g3topbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1322"/>
      <state state_ref="oval:org.mitre.oval:ste:2134"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2281" version="1" check="at least one" comment="/usr/bin/g3topbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1322"/>
      <state state_ref="oval:org.mitre.oval:ste:2133"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2280" version="1" check="at least one" comment="/usr/bin/gemtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1321"/>
      <state state_ref="oval:org.mitre.oval:ste:2132"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2279" version="1" check="at least one" comment="/usr/bin/gemtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1321"/>
      <state state_ref="oval:org.mitre.oval:ste:2131"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2278" version="1" check="at least one" comment="/usr/bin/gemtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1321"/>
      <state state_ref="oval:org.mitre.oval:ste:2130"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2277" version="1" check="at least one" comment="/usr/bin/gemtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1320"/>
      <state state_ref="oval:org.mitre.oval:ste:2129"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2276" version="1" check="at least one" comment="/usr/bin/gemtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1320"/>
      <state state_ref="oval:org.mitre.oval:ste:2128"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2275" version="1" check="at least one" comment="/usr/bin/gemtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1320"/>
      <state state_ref="oval:org.mitre.oval:ste:2127"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2274" version="1" check="at least one" comment="/usr/bin/giftopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1319"/>
      <state state_ref="oval:org.mitre.oval:ste:2126"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2273" version="1" check="at least one" comment="/usr/bin/giftopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1319"/>
      <state state_ref="oval:org.mitre.oval:ste:2125"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2272" version="1" check="at least one" comment="/usr/bin/giftopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1319"/>
      <state state_ref="oval:org.mitre.oval:ste:2124"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2271" version="1" check="at least one" comment="/usr/bin/gouldtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1318"/>
      <state state_ref="oval:org.mitre.oval:ste:2123"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2270" version="1" check="at least one" comment="/usr/bin/gouldtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1318"/>
      <state state_ref="oval:org.mitre.oval:ste:2122"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2269" version="1" check="at least one" comment="/usr/bin/gouldtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1318"/>
      <state state_ref="oval:org.mitre.oval:ste:2121"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2268" version="1" check="at least one" comment="/usr/bin/hipstopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1317"/>
      <state state_ref="oval:org.mitre.oval:ste:2120"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2267" version="1" check="at least one" comment="/usr/bin/hipstopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1317"/>
      <state state_ref="oval:org.mitre.oval:ste:2119"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2266" version="1" check="at least one" comment="/usr/bin/hipstopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1317"/>
      <state state_ref="oval:org.mitre.oval:ste:2118"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2265" version="1" check="at least one" comment="/usr/bin/hpcdtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1316"/>
      <state state_ref="oval:org.mitre.oval:ste:2117"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2264" version="1" check="at least one" comment="/usr/bin/hpcdtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1316"/>
      <state state_ref="oval:org.mitre.oval:ste:2116"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2263" version="1" check="at least one" comment="/usr/bin/hpcdtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1316"/>
      <state state_ref="oval:org.mitre.oval:ste:2115"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2262" version="1" check="at least one" comment="/usr/bin/icontopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1315"/>
      <state state_ref="oval:org.mitre.oval:ste:2114"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2261" version="1" check="at least one" comment="/usr/bin/icontopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1315"/>
      <state state_ref="oval:org.mitre.oval:ste:2113"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2260" version="1" check="at least one" comment="/usr/bin/icontopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1315"/>
      <state state_ref="oval:org.mitre.oval:ste:2112"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2259" version="1" check="at least one" comment="/usr/bin/ilbmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1314"/>
      <state state_ref="oval:org.mitre.oval:ste:2111"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2258" version="1" check="at least one" comment="/usr/bin/ilbmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1314"/>
      <state state_ref="oval:org.mitre.oval:ste:2110"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2257" version="1" check="at least one" comment="/usr/bin/ilbmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1314"/>
      <state state_ref="oval:org.mitre.oval:ste:2109"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2256" version="1" check="at least one" comment="/usr/bin/imgtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1313"/>
      <state state_ref="oval:org.mitre.oval:ste:2108"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2255" version="1" check="at least one" comment="/usr/bin/imgtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1313"/>
      <state state_ref="oval:org.mitre.oval:ste:2107"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2254" version="1" check="at least one" comment="/usr/bin/imgtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1313"/>
      <state state_ref="oval:org.mitre.oval:ste:2106"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2253" version="1" check="at least one" comment="/usr/bin/jpegtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1312"/>
      <state state_ref="oval:org.mitre.oval:ste:2105"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2252" version="1" check="at least one" comment="/usr/bin/jpegtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1312"/>
      <state state_ref="oval:org.mitre.oval:ste:2104"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2251" version="1" check="at least one" comment="/usr/bin/jpegtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1312"/>
      <state state_ref="oval:org.mitre.oval:ste:2103"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2250" version="1" check="at least one" comment="/usr/bin/leaftoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1311"/>
      <state state_ref="oval:org.mitre.oval:ste:2102"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2249" version="1" check="at least one" comment="/usr/bin/leaftoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1311"/>
      <state state_ref="oval:org.mitre.oval:ste:2101"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2248" version="1" check="at least one" comment="/usr/bin/leaftoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1311"/>
      <state state_ref="oval:org.mitre.oval:ste:2100"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2247" version="1" check="at least one" comment="/usr/bin/lispmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1310"/>
      <state state_ref="oval:org.mitre.oval:ste:2099"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2246" version="1" check="at least one" comment="/usr/bin/lispmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1310"/>
      <state state_ref="oval:org.mitre.oval:ste:2098"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2245" version="1" check="at least one" comment="/usr/bin/lispmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1310"/>
      <state state_ref="oval:org.mitre.oval:ste:2097"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2244" version="1" check="at least one" comment="/usr/bin/macptopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1309"/>
      <state state_ref="oval:org.mitre.oval:ste:2096"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2243" version="1" check="at least one" comment="/usr/bin/macptopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1309"/>
      <state state_ref="oval:org.mitre.oval:ste:2095"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2242" version="1" check="at least one" comment="/usr/bin/macptopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1309"/>
      <state state_ref="oval:org.mitre.oval:ste:2094"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2241" version="1" check="at least one" comment="/usr/bin/mdatopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1308"/>
      <state state_ref="oval:org.mitre.oval:ste:2093"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2240" version="1" check="at least one" comment="/usr/bin/mdatopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1308"/>
      <state state_ref="oval:org.mitre.oval:ste:2092"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2239" version="1" check="at least one" comment="/usr/bin/mdatopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1308"/>
      <state state_ref="oval:org.mitre.oval:ste:2091"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2238" version="1" check="at least one" comment="/usr/bin/mgrtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1307"/>
      <state state_ref="oval:org.mitre.oval:ste:2090"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2237" version="1" check="at least one" comment="/usr/bin/mgrtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1307"/>
      <state state_ref="oval:org.mitre.oval:ste:2089"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2236" version="1" check="at least one" comment="/usr/bin/mgrtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1307"/>
      <state state_ref="oval:org.mitre.oval:ste:2088"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2235" version="1" check="at least one" comment="/usr/bin/mtvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1306"/>
      <state state_ref="oval:org.mitre.oval:ste:2087"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2234" version="1" check="at least one" comment="/usr/bin/mtvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1306"/>
      <state state_ref="oval:org.mitre.oval:ste:2086"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2233" version="1" check="at least one" comment="/usr/bin/mtvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1306"/>
      <state state_ref="oval:org.mitre.oval:ste:2085"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2232" version="1" check="at least one" comment="/usr/bin/neotoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1305"/>
      <state state_ref="oval:org.mitre.oval:ste:2084"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2231" version="1" check="at least one" comment="/usr/bin/neotoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1305"/>
      <state state_ref="oval:org.mitre.oval:ste:2083"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2230" version="1" check="at least one" comment="/usr/bin/neotoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1305"/>
      <state state_ref="oval:org.mitre.oval:ste:2082"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2229" version="1" check="at least one" comment="/usr/bin/palmtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1304"/>
      <state state_ref="oval:org.mitre.oval:ste:2081"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2228" version="1" check="at least one" comment="/usr/bin/palmtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1304"/>
      <state state_ref="oval:org.mitre.oval:ste:2080"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2227" version="1" check="at least one" comment="/usr/bin/palmtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1304"/>
      <state state_ref="oval:org.mitre.oval:ste:2079"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2226" version="1" check="at least one" comment="/usr/bin/pamchannel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1303"/>
      <state state_ref="oval:org.mitre.oval:ste:2078"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2225" version="1" check="at least one" comment="/usr/bin/pamchannel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1303"/>
      <state state_ref="oval:org.mitre.oval:ste:2077"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2224" version="1" check="at least one" comment="/usr/bin/pamchannel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1303"/>
      <state state_ref="oval:org.mitre.oval:ste:2076"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2223" version="1" check="at least one" comment="/usr/bin/pamcut is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1302"/>
      <state state_ref="oval:org.mitre.oval:ste:2075"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2222" version="1" check="at least one" comment="/usr/bin/pamcut is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1302"/>
      <state state_ref="oval:org.mitre.oval:ste:2074"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2221" version="1" check="at least one" comment="/usr/bin/pamcut is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1302"/>
      <state state_ref="oval:org.mitre.oval:ste:2073"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2220" version="1" check="at least one" comment="/usr/bin/pamdeinterlace is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1301"/>
      <state state_ref="oval:org.mitre.oval:ste:2072"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2219" version="1" check="at least one" comment="/usr/bin/pamdeinterlace is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1301"/>
      <state state_ref="oval:org.mitre.oval:ste:2071"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2218" version="1" check="at least one" comment="/usr/bin/pamdeinterlace is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1301"/>
      <state state_ref="oval:org.mitre.oval:ste:2070"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2217" version="1" check="at least one" comment="/usr/bin/pamfile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1300"/>
      <state state_ref="oval:org.mitre.oval:ste:2069"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2216" version="1" check="at least one" comment="/usr/bin/pamfile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1300"/>
      <state state_ref="oval:org.mitre.oval:ste:2068"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2215" version="1" check="at least one" comment="/usr/bin/pamfile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1300"/>
      <state state_ref="oval:org.mitre.oval:ste:2067"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2214" version="1" check="at least one" comment="/usr/bin/pamoil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1299"/>
      <state state_ref="oval:org.mitre.oval:ste:2066"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2213" version="1" check="at least one" comment="/usr/bin/pamoil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1299"/>
      <state state_ref="oval:org.mitre.oval:ste:2065"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2212" version="1" check="at least one" comment="/usr/bin/pamoil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1299"/>
      <state state_ref="oval:org.mitre.oval:ste:2064"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2211" version="1" check="at least one" comment="/usr/bin/pamstretch is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1298"/>
      <state state_ref="oval:org.mitre.oval:ste:2063"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2210" version="1" check="at least one" comment="/usr/bin/pamstretch is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1298"/>
      <state state_ref="oval:org.mitre.oval:ste:2062"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2209" version="1" check="at least one" comment="/usr/bin/pamstretch is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1298"/>
      <state state_ref="oval:org.mitre.oval:ste:2061"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2208" version="1" check="at least one" comment="/usr/bin/pamtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1297"/>
      <state state_ref="oval:org.mitre.oval:ste:2060"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2207" version="1" check="at least one" comment="/usr/bin/pamtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1297"/>
      <state state_ref="oval:org.mitre.oval:ste:2059"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2206" version="1" check="at least one" comment="/usr/bin/pamtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1297"/>
      <state state_ref="oval:org.mitre.oval:ste:2058"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2205" version="1" check="at least one" comment="/usr/bin/pbmclean is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1296"/>
      <state state_ref="oval:org.mitre.oval:ste:2057"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2204" version="1" check="at least one" comment="/usr/bin/pbmclean is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1296"/>
      <state state_ref="oval:org.mitre.oval:ste:2056"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2203" version="1" check="at least one" comment="/usr/bin/pbmclean is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1296"/>
      <state state_ref="oval:org.mitre.oval:ste:2055"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2202" version="1" check="at least one" comment="/usr/bin/pbmlife is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1295"/>
      <state state_ref="oval:org.mitre.oval:ste:2054"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2201" version="1" check="at least one" comment="/usr/bin/pbmlife is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1295"/>
      <state state_ref="oval:org.mitre.oval:ste:2053"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2200" version="1" check="at least one" comment="/usr/bin/pbmlife is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1295"/>
      <state state_ref="oval:org.mitre.oval:ste:2052"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2199" version="1" check="at least one" comment="/usr/bin/pbmmake is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1294"/>
      <state state_ref="oval:org.mitre.oval:ste:2051"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2198" version="1" check="at least one" comment="/usr/bin/pbmmake is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1294"/>
      <state state_ref="oval:org.mitre.oval:ste:2050"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2197" version="1" check="at least one" comment="/usr/bin/pbmmake is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1294"/>
      <state state_ref="oval:org.mitre.oval:ste:2049"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2196" version="1" check="at least one" comment="/usr/bin/pbmmask is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1293"/>
      <state state_ref="oval:org.mitre.oval:ste:2048"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2195" version="1" check="at least one" comment="/usr/bin/pbmmask is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1293"/>
      <state state_ref="oval:org.mitre.oval:ste:2047"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2194" version="1" check="at least one" comment="/usr/bin/pbmmask is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1293"/>
      <state state_ref="oval:org.mitre.oval:ste:2046"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2193" version="1" check="at least one" comment="/usr/bin/pbmpage is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1292"/>
      <state state_ref="oval:org.mitre.oval:ste:2045"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2192" version="1" check="at least one" comment="/usr/bin/pbmpage is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1292"/>
      <state state_ref="oval:org.mitre.oval:ste:2044"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2191" version="1" check="at least one" comment="/usr/bin/pbmpage is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1292"/>
      <state state_ref="oval:org.mitre.oval:ste:2043"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2190" version="1" check="at least one" comment="/usr/bin/pbmpscale is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1291"/>
      <state state_ref="oval:org.mitre.oval:ste:2042"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2189" version="1" check="at least one" comment="/usr/bin/pbmpscale is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1291"/>
      <state state_ref="oval:org.mitre.oval:ste:2041"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2188" version="1" check="at least one" comment="/usr/bin/pbmpscale is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1291"/>
      <state state_ref="oval:org.mitre.oval:ste:2040"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2187" version="1" check="at least one" comment="/usr/bin/pbmreduce is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1290"/>
      <state state_ref="oval:org.mitre.oval:ste:2039"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2186" version="1" check="at least one" comment="/usr/bin/pbmreduce is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1290"/>
      <state state_ref="oval:org.mitre.oval:ste:2038"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2185" version="1" check="at least one" comment="/usr/bin/pbmreduce is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1290"/>
      <state state_ref="oval:org.mitre.oval:ste:2037"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2184" version="1" check="at least one" comment="/usr/bin/pbmtext is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1289"/>
      <state state_ref="oval:org.mitre.oval:ste:2036"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2183" version="1" check="at least one" comment="/usr/bin/pbmtext is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1289"/>
      <state state_ref="oval:org.mitre.oval:ste:2035"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2182" version="1" check="at least one" comment="/usr/bin/pbmtext is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1289"/>
      <state state_ref="oval:org.mitre.oval:ste:2034"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2181" version="1" check="at least one" comment="/usr/bin/pbmto10x is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1288"/>
      <state state_ref="oval:org.mitre.oval:ste:2033"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2180" version="1" check="at least one" comment="/usr/bin/pbmto10x is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1288"/>
      <state state_ref="oval:org.mitre.oval:ste:2032"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2179" version="1" check="at least one" comment="/usr/bin/pbmto10x is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1288"/>
      <state state_ref="oval:org.mitre.oval:ste:2031"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2178" version="1" check="at least one" comment="/usr/bin/pbmto4425 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1287"/>
      <state state_ref="oval:org.mitre.oval:ste:2030"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2177" version="1" check="at least one" comment="/usr/bin/pbmto4425 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1287"/>
      <state state_ref="oval:org.mitre.oval:ste:2029"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2176" version="1" check="at least one" comment="/usr/bin/pbmto4425 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1287"/>
      <state state_ref="oval:org.mitre.oval:ste:2028"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2175" version="1" check="at least one" comment="/usr/bin/pbmtoascii is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1286"/>
      <state state_ref="oval:org.mitre.oval:ste:2027"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2174" version="1" check="at least one" comment="/usr/bin/pbmtoascii is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1286"/>
      <state state_ref="oval:org.mitre.oval:ste:2026"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2173" version="1" check="at least one" comment="/usr/bin/pbmtoascii is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1286"/>
      <state state_ref="oval:org.mitre.oval:ste:2025"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2172" version="1" check="at least one" comment="/usr/bin/pbmtoatk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1285"/>
      <state state_ref="oval:org.mitre.oval:ste:2024"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2171" version="1" check="at least one" comment="/usr/bin/pbmtoatk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1285"/>
      <state state_ref="oval:org.mitre.oval:ste:2023"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2170" version="1" check="at least one" comment="/usr/bin/pbmtoatk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1285"/>
      <state state_ref="oval:org.mitre.oval:ste:2022"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2169" version="1" check="at least one" comment="/usr/bin/pbmtobbnbg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1284"/>
      <state state_ref="oval:org.mitre.oval:ste:2021"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2168" version="1" check="at least one" comment="/usr/bin/pbmtobbnbg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1284"/>
      <state state_ref="oval:org.mitre.oval:ste:2020"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2167" version="1" check="at least one" comment="/usr/bin/pbmtobbnbg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1284"/>
      <state state_ref="oval:org.mitre.oval:ste:2019"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2166" version="1" check="at least one" comment="/usr/bin/pbmtocmuwm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1283"/>
      <state state_ref="oval:org.mitre.oval:ste:2018"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2165" version="1" check="at least one" comment="/usr/bin/pbmtocmuwm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1283"/>
      <state state_ref="oval:org.mitre.oval:ste:2017"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2164" version="1" check="at least one" comment="/usr/bin/pbmtocmuwm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1283"/>
      <state state_ref="oval:org.mitre.oval:ste:2016"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2163" version="1" check="at least one" comment="/usr/bin/pbmtoepsi is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1282"/>
      <state state_ref="oval:org.mitre.oval:ste:2015"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2162" version="1" check="at least one" comment="/usr/bin/pbmtoepsi is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1282"/>
      <state state_ref="oval:org.mitre.oval:ste:2014"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2161" version="1" check="at least one" comment="/usr/bin/pbmtoepsi is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1282"/>
      <state state_ref="oval:org.mitre.oval:ste:2013"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2160" version="1" check="at least one" comment="/usr/bin/pbmtoepson is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1281"/>
      <state state_ref="oval:org.mitre.oval:ste:2012"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2159" version="1" check="at least one" comment="/usr/bin/pbmtoepson is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1281"/>
      <state state_ref="oval:org.mitre.oval:ste:2011"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2158" version="1" check="at least one" comment="/usr/bin/pbmtoepson is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1281"/>
      <state state_ref="oval:org.mitre.oval:ste:2010"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2157" version="1" check="at least one" comment="/usr/bin/pbmtog3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1280"/>
      <state state_ref="oval:org.mitre.oval:ste:2009"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2156" version="1" check="at least one" comment="/usr/bin/pbmtog3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1280"/>
      <state state_ref="oval:org.mitre.oval:ste:2008"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2155" version="1" check="at least one" comment="/usr/bin/pbmtog3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1280"/>
      <state state_ref="oval:org.mitre.oval:ste:2007"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2154" version="1" check="at least one" comment="/usr/bin/pbmtogem is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1279"/>
      <state state_ref="oval:org.mitre.oval:ste:2006"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2153" version="1" check="at least one" comment="/usr/bin/pbmtogem is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1279"/>
      <state state_ref="oval:org.mitre.oval:ste:2005"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2152" version="1" check="at least one" comment="/usr/bin/pbmtogem is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1279"/>
      <state state_ref="oval:org.mitre.oval:ste:2004"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2151" version="1" check="at least one" comment="/usr/bin/pbmtogo is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1278"/>
      <state state_ref="oval:org.mitre.oval:ste:2003"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2150" version="1" check="at least one" comment="/usr/bin/pbmtogo is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1278"/>
      <state state_ref="oval:org.mitre.oval:ste:2002"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2149" version="1" check="at least one" comment="/usr/bin/pbmtogo is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1278"/>
      <state state_ref="oval:org.mitre.oval:ste:2001"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2148" version="1" check="at least one" comment="/usr/bin/pbmtoicon is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1277"/>
      <state state_ref="oval:org.mitre.oval:ste:2000"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2147" version="1" check="at least one" comment="/usr/bin/pbmtoicon is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1277"/>
      <state state_ref="oval:org.mitre.oval:ste:1999"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2146" version="1" check="at least one" comment="/usr/bin/pbmtoicon is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1277"/>
      <state state_ref="oval:org.mitre.oval:ste:1998"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2145" version="1" check="at least one" comment="/usr/bin/pbmtolj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1276"/>
      <state state_ref="oval:org.mitre.oval:ste:1997"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2144" version="1" check="at least one" comment="/usr/bin/pbmtolj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1276"/>
      <state state_ref="oval:org.mitre.oval:ste:1996"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2143" version="1" check="at least one" comment="/usr/bin/pbmtolj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1276"/>
      <state state_ref="oval:org.mitre.oval:ste:1995"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2142" version="1" check="at least one" comment="/usr/bin/pbmtoln03 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1275"/>
      <state state_ref="oval:org.mitre.oval:ste:1994"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2141" version="1" check="at least one" comment="/usr/bin/pbmtoln03 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1275"/>
      <state state_ref="oval:org.mitre.oval:ste:1993"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2140" version="1" check="at least one" comment="/usr/bin/pbmtoln03 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1275"/>
      <state state_ref="oval:org.mitre.oval:ste:1992"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2139" version="1" check="at least one" comment="/usr/bin/pbmtolps is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1274"/>
      <state state_ref="oval:org.mitre.oval:ste:1991"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2138" version="1" check="at least one" comment="/usr/bin/pbmtolps is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1274"/>
      <state state_ref="oval:org.mitre.oval:ste:1990"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2137" version="1" check="at least one" comment="/usr/bin/pbmtolps is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1274"/>
      <state state_ref="oval:org.mitre.oval:ste:1989"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2136" version="1" check="at least one" comment="/usr/bin/pbmtomacp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1273"/>
      <state state_ref="oval:org.mitre.oval:ste:1988"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2135" version="1" check="at least one" comment="/usr/bin/pbmtomacp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1273"/>
      <state state_ref="oval:org.mitre.oval:ste:1987"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2134" version="1" check="at least one" comment="/usr/bin/pbmtomacp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1273"/>
      <state state_ref="oval:org.mitre.oval:ste:1986"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2133" version="1" check="at least one" comment="/usr/bin/pbmtomda is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1272"/>
      <state state_ref="oval:org.mitre.oval:ste:1985"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2132" version="1" check="at least one" comment="/usr/bin/pbmtomda is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1272"/>
      <state state_ref="oval:org.mitre.oval:ste:1984"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2131" version="1" check="at least one" comment="/usr/bin/pbmtomda is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1272"/>
      <state state_ref="oval:org.mitre.oval:ste:1983"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2130" version="1" check="at least one" comment="/usr/bin/pbmtomgr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1271"/>
      <state state_ref="oval:org.mitre.oval:ste:1982"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2129" version="1" check="at least one" comment="/usr/bin/pbmtomgr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1271"/>
      <state state_ref="oval:org.mitre.oval:ste:1981"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2128" version="1" check="at least one" comment="/usr/bin/pbmtomgr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1271"/>
      <state state_ref="oval:org.mitre.oval:ste:1980"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2127" version="1" check="at least one" comment="/usr/bin/pbmtonokia is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1270"/>
      <state state_ref="oval:org.mitre.oval:ste:1979"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2126" version="1" check="at least one" comment="/usr/bin/pbmtonokia is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1270"/>
      <state state_ref="oval:org.mitre.oval:ste:1978"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2125" version="1" check="at least one" comment="/usr/bin/pbmtonokia is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1270"/>
      <state state_ref="oval:org.mitre.oval:ste:1977"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2124" version="1" check="at least one" comment="/usr/bin/pbmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1269"/>
      <state state_ref="oval:org.mitre.oval:ste:1976"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2123" version="1" check="at least one" comment="/usr/bin/pbmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1269"/>
      <state state_ref="oval:org.mitre.oval:ste:1975"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2122" version="1" check="at least one" comment="/usr/bin/pbmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1269"/>
      <state state_ref="oval:org.mitre.oval:ste:1974"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2121" version="1" check="at least one" comment="/usr/bin/pbmtopi3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1268"/>
      <state state_ref="oval:org.mitre.oval:ste:1973"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2120" version="1" check="at least one" comment="/usr/bin/pbmtopi3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1268"/>
      <state state_ref="oval:org.mitre.oval:ste:1972"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2119" version="1" check="at least one" comment="/usr/bin/pbmtopi3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1268"/>
      <state state_ref="oval:org.mitre.oval:ste:1971"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2118" version="1" check="at least one" comment="/usr/bin/pbmtopk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1267"/>
      <state state_ref="oval:org.mitre.oval:ste:1970"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2117" version="1" check="at least one" comment="/usr/bin/pbmtopk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1267"/>
      <state state_ref="oval:org.mitre.oval:ste:1969"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2116" version="1" check="at least one" comment="/usr/bin/pbmtopk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1267"/>
      <state state_ref="oval:org.mitre.oval:ste:1968"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2115" version="1" check="at least one" comment="/usr/bin/pbmtoplot is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1266"/>
      <state state_ref="oval:org.mitre.oval:ste:1967"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2114" version="1" check="at least one" comment="/usr/bin/pbmtoplot is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1266"/>
      <state state_ref="oval:org.mitre.oval:ste:1966"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2113" version="1" check="at least one" comment="/usr/bin/pbmtoplot is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1266"/>
      <state state_ref="oval:org.mitre.oval:ste:1965"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2112" version="1" check="at least one" comment="/usr/bin/pbmtoppa is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1265"/>
      <state state_ref="oval:org.mitre.oval:ste:1964"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2111" version="1" check="at least one" comment="/usr/bin/pbmtoppa is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1265"/>
      <state state_ref="oval:org.mitre.oval:ste:1963"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2110" version="1" check="at least one" comment="/usr/bin/pbmtoppa is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1265"/>
      <state state_ref="oval:org.mitre.oval:ste:1962"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2109" version="1" check="at least one" comment="/usr/bin/pbmtopsg3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1264"/>
      <state state_ref="oval:org.mitre.oval:ste:1961"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2108" version="1" check="at least one" comment="/usr/bin/pbmtopsg3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1264"/>
      <state state_ref="oval:org.mitre.oval:ste:1960"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2107" version="1" check="at least one" comment="/usr/bin/pbmtopsg3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1264"/>
      <state state_ref="oval:org.mitre.oval:ste:1959"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2106" version="1" check="at least one" comment="/usr/bin/pbmtoptx is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1263"/>
      <state state_ref="oval:org.mitre.oval:ste:1958"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2105" version="1" check="at least one" comment="/usr/bin/pbmtoptx is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1263"/>
      <state state_ref="oval:org.mitre.oval:ste:1957"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2104" version="1" check="at least one" comment="/usr/bin/pbmtoptx is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1263"/>
      <state state_ref="oval:org.mitre.oval:ste:1956"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2103" version="1" check="at least one" comment="/usr/bin/pbmtowbmp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1262"/>
      <state state_ref="oval:org.mitre.oval:ste:1955"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2102" version="1" check="at least one" comment="/usr/bin/pbmtowbmp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1262"/>
      <state state_ref="oval:org.mitre.oval:ste:1954"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2101" version="1" check="at least one" comment="/usr/bin/pbmtowbmp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1262"/>
      <state state_ref="oval:org.mitre.oval:ste:1953"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2100" version="1" check="at least one" comment="/usr/bin/pbmtox10bm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1261"/>
      <state state_ref="oval:org.mitre.oval:ste:1952"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2099" version="1" check="at least one" comment="/usr/bin/pbmtox10bm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1261"/>
      <state state_ref="oval:org.mitre.oval:ste:1951"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2098" version="1" check="at least one" comment="/usr/bin/pbmtox10bm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1261"/>
      <state state_ref="oval:org.mitre.oval:ste:1950"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2097" version="1" check="at least one" comment="/usr/bin/pbmtoxbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1260"/>
      <state state_ref="oval:org.mitre.oval:ste:1949"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2096" version="1" check="at least one" comment="/usr/bin/pbmtoxbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1260"/>
      <state state_ref="oval:org.mitre.oval:ste:1948"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2095" version="1" check="at least one" comment="/usr/bin/pbmtoxbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1260"/>
      <state state_ref="oval:org.mitre.oval:ste:1947"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2094" version="1" check="at least one" comment="/usr/bin/pbmtoybm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1259"/>
      <state state_ref="oval:org.mitre.oval:ste:1946"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2093" version="1" check="at least one" comment="/usr/bin/pbmtoybm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1259"/>
      <state state_ref="oval:org.mitre.oval:ste:1945"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2092" version="1" check="at least one" comment="/usr/bin/pbmtoybm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1259"/>
      <state state_ref="oval:org.mitre.oval:ste:1944"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2091" version="1" check="at least one" comment="/usr/bin/pbmtozinc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1258"/>
      <state state_ref="oval:org.mitre.oval:ste:1943"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2090" version="1" check="at least one" comment="/usr/bin/pbmtozinc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1258"/>
      <state state_ref="oval:org.mitre.oval:ste:1942"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2089" version="1" check="at least one" comment="/usr/bin/pbmtozinc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1258"/>
      <state state_ref="oval:org.mitre.oval:ste:1941"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2088" version="1" check="at least one" comment="/usr/bin/pbmupc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1257"/>
      <state state_ref="oval:org.mitre.oval:ste:1940"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2087" version="1" check="at least one" comment="/usr/bin/pbmupc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1257"/>
      <state state_ref="oval:org.mitre.oval:ste:1939"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2086" version="1" check="at least one" comment="/usr/bin/pbmupc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1257"/>
      <state state_ref="oval:org.mitre.oval:ste:1938"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2085" version="1" check="at least one" comment="/usr/bin/pcxtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1256"/>
      <state state_ref="oval:org.mitre.oval:ste:1937"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2084" version="1" check="at least one" comment="/usr/bin/pcxtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1256"/>
      <state state_ref="oval:org.mitre.oval:ste:1936"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2083" version="1" check="at least one" comment="/usr/bin/pcxtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1256"/>
      <state state_ref="oval:org.mitre.oval:ste:1935"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2082" version="1" check="at least one" comment="/usr/bin/pgmbentley is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1255"/>
      <state state_ref="oval:org.mitre.oval:ste:1934"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2081" version="1" check="at least one" comment="/usr/bin/pgmbentley is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1255"/>
      <state state_ref="oval:org.mitre.oval:ste:1933"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2080" version="1" check="at least one" comment="/usr/bin/pgmbentley is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1255"/>
      <state state_ref="oval:org.mitre.oval:ste:1932"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2079" version="1" check="at least one" comment="/usr/bin/pgmcrater is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1254"/>
      <state state_ref="oval:org.mitre.oval:ste:1931"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2078" version="1" check="at least one" comment="/usr/bin/pgmcrater is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1254"/>
      <state state_ref="oval:org.mitre.oval:ste:1930"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2077" version="1" check="at least one" comment="/usr/bin/pgmcrater is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1254"/>
      <state state_ref="oval:org.mitre.oval:ste:1929"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2076" version="1" check="at least one" comment="/usr/bin/pgmedge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1253"/>
      <state state_ref="oval:org.mitre.oval:ste:1928"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2075" version="1" check="at least one" comment="/usr/bin/pgmedge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1253"/>
      <state state_ref="oval:org.mitre.oval:ste:1927"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2074" version="1" check="at least one" comment="/usr/bin/pgmedge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1253"/>
      <state state_ref="oval:org.mitre.oval:ste:1926"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2073" version="1" check="at least one" comment="/usr/bin/pgmenhance is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1252"/>
      <state state_ref="oval:org.mitre.oval:ste:1925"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2072" version="1" check="at least one" comment="/usr/bin/pgmenhance is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1252"/>
      <state state_ref="oval:org.mitre.oval:ste:1924"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2071" version="1" check="at least one" comment="/usr/bin/pgmenhance is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1252"/>
      <state state_ref="oval:org.mitre.oval:ste:1923"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2070" version="1" check="at least one" comment="/usr/bin/pgmhist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1251"/>
      <state state_ref="oval:org.mitre.oval:ste:1922"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2069" version="1" check="at least one" comment="/usr/bin/pgmhist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1251"/>
      <state state_ref="oval:org.mitre.oval:ste:1921"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2068" version="1" check="at least one" comment="/usr/bin/pgmhist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1251"/>
      <state state_ref="oval:org.mitre.oval:ste:1920"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2067" version="1" check="at least one" comment="/usr/bin/pgmkernel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1250"/>
      <state state_ref="oval:org.mitre.oval:ste:1919"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2066" version="1" check="at least one" comment="/usr/bin/pgmkernel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1250"/>
      <state state_ref="oval:org.mitre.oval:ste:1918"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2065" version="1" check="at least one" comment="/usr/bin/pgmkernel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1250"/>
      <state state_ref="oval:org.mitre.oval:ste:1917"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2064" version="1" check="at least one" comment="/usr/bin/pgmnoise is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1249"/>
      <state state_ref="oval:org.mitre.oval:ste:1916"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2063" version="1" check="at least one" comment="/usr/bin/pgmnoise is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1249"/>
      <state state_ref="oval:org.mitre.oval:ste:1915"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2062" version="1" check="at least one" comment="/usr/bin/pgmnoise is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1249"/>
      <state state_ref="oval:org.mitre.oval:ste:1914"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2061" version="1" check="at least one" comment="/usr/bin/pgmnorm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1248"/>
      <state state_ref="oval:org.mitre.oval:ste:1913"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2060" version="1" check="at least one" comment="/usr/bin/pgmnorm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1248"/>
      <state state_ref="oval:org.mitre.oval:ste:1912"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2059" version="1" check="at least one" comment="/usr/bin/pgmnorm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1248"/>
      <state state_ref="oval:org.mitre.oval:ste:1911"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2058" version="1" check="at least one" comment="/usr/bin/pgmoil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1247"/>
      <state state_ref="oval:org.mitre.oval:ste:1910"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2057" version="1" check="at least one" comment="/usr/bin/pgmoil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1247"/>
      <state state_ref="oval:org.mitre.oval:ste:1909"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2056" version="1" check="at least one" comment="/usr/bin/pgmoil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1247"/>
      <state state_ref="oval:org.mitre.oval:ste:1908"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2055" version="1" check="at least one" comment="/usr/bin/pgmramp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1246"/>
      <state state_ref="oval:org.mitre.oval:ste:1907"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2054" version="1" check="at least one" comment="/usr/bin/pgmramp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1246"/>
      <state state_ref="oval:org.mitre.oval:ste:1906"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2053" version="1" check="at least one" comment="/usr/bin/pgmramp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1246"/>
      <state state_ref="oval:org.mitre.oval:ste:1905"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2052" version="1" check="at least one" comment="/usr/bin/pgmslice is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1245"/>
      <state state_ref="oval:org.mitre.oval:ste:1904"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2051" version="1" check="at least one" comment="/usr/bin/pgmslice is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1245"/>
      <state state_ref="oval:org.mitre.oval:ste:1903"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2050" version="1" check="at least one" comment="/usr/bin/pgmslice is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1245"/>
      <state state_ref="oval:org.mitre.oval:ste:1902"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2049" version="1" check="at least one" comment="/usr/bin/pgmtexture is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1244"/>
      <state state_ref="oval:org.mitre.oval:ste:1901"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2048" version="1" check="at least one" comment="/usr/bin/pgmtexture is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1244"/>
      <state state_ref="oval:org.mitre.oval:ste:1900"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2047" version="1" check="at least one" comment="/usr/bin/pgmtexture is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1244"/>
      <state state_ref="oval:org.mitre.oval:ste:1899"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2046" version="1" check="at least one" comment="/usr/bin/pgmtofs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1243"/>
      <state state_ref="oval:org.mitre.oval:ste:1898"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2045" version="1" check="at least one" comment="/usr/bin/pgmtofs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1243"/>
      <state state_ref="oval:org.mitre.oval:ste:1897"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2044" version="1" check="at least one" comment="/usr/bin/pgmtofs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1243"/>
      <state state_ref="oval:org.mitre.oval:ste:1896"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2043" version="1" check="at least one" comment="/usr/bin/pgmtolispm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1242"/>
      <state state_ref="oval:org.mitre.oval:ste:1895"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2042" version="1" check="at least one" comment="/usr/bin/pgmtolispm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1242"/>
      <state state_ref="oval:org.mitre.oval:ste:1894"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2041" version="1" check="at least one" comment="/usr/bin/pgmtolispm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1242"/>
      <state state_ref="oval:org.mitre.oval:ste:1893"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2040" version="1" check="at least one" comment="/usr/bin/pgmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1241"/>
      <state state_ref="oval:org.mitre.oval:ste:1892"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2039" version="1" check="at least one" comment="/usr/bin/pgmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1241"/>
      <state state_ref="oval:org.mitre.oval:ste:1891"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2038" version="1" check="at least one" comment="/usr/bin/pgmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1241"/>
      <state state_ref="oval:org.mitre.oval:ste:1890"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2037" version="1" check="at least one" comment="/usr/bin/pgmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1240"/>
      <state state_ref="oval:org.mitre.oval:ste:1889"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2036" version="1" check="at least one" comment="/usr/bin/pgmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1240"/>
      <state state_ref="oval:org.mitre.oval:ste:1888"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2035" version="1" check="at least one" comment="/usr/bin/pgmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1240"/>
      <state state_ref="oval:org.mitre.oval:ste:1887"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2034" version="1" check="at least one" comment="/usr/bin/pi1toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1239"/>
      <state state_ref="oval:org.mitre.oval:ste:1886"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2033" version="1" check="at least one" comment="/usr/bin/pi1toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1239"/>
      <state state_ref="oval:org.mitre.oval:ste:1885"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2032" version="1" check="at least one" comment="/usr/bin/pi1toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1239"/>
      <state state_ref="oval:org.mitre.oval:ste:1884"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2031" version="1" check="at least one" comment="/usr/bin/pi3topbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1238"/>
      <state state_ref="oval:org.mitre.oval:ste:1883"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2030" version="1" check="at least one" comment="/usr/bin/pi3topbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1238"/>
      <state state_ref="oval:org.mitre.oval:ste:1882"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2029" version="1" check="at least one" comment="/usr/bin/pi3topbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1238"/>
      <state state_ref="oval:org.mitre.oval:ste:1881"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2028" version="1" check="at least one" comment="/usr/bin/pjtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1237"/>
      <state state_ref="oval:org.mitre.oval:ste:1880"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2027" version="1" check="at least one" comment="/usr/bin/pjtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1237"/>
      <state state_ref="oval:org.mitre.oval:ste:1879"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2026" version="1" check="at least one" comment="/usr/bin/pjtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1237"/>
      <state state_ref="oval:org.mitre.oval:ste:1878"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2025" version="1" check="at least one" comment="/usr/bin/pktopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1236"/>
      <state state_ref="oval:org.mitre.oval:ste:1877"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2024" version="1" check="at least one" comment="/usr/bin/pktopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1236"/>
      <state state_ref="oval:org.mitre.oval:ste:1876"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2023" version="1" check="at least one" comment="/usr/bin/pktopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1236"/>
      <state state_ref="oval:org.mitre.oval:ste:1875"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2022" version="1" check="at least one" comment="/usr/bin/pngtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1235"/>
      <state state_ref="oval:org.mitre.oval:ste:1874"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2021" version="1" check="at least one" comment="/usr/bin/pngtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1235"/>
      <state state_ref="oval:org.mitre.oval:ste:1873"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2020" version="1" check="at least one" comment="/usr/bin/pngtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1235"/>
      <state state_ref="oval:org.mitre.oval:ste:1872"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2019" version="1" check="at least one" comment="/usr/bin/pnmalias is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1234"/>
      <state state_ref="oval:org.mitre.oval:ste:1871"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2018" version="1" check="at least one" comment="/usr/bin/pnmalias is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1234"/>
      <state state_ref="oval:org.mitre.oval:ste:1870"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2017" version="1" check="at least one" comment="/usr/bin/pnmalias is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1234"/>
      <state state_ref="oval:org.mitre.oval:ste:1869"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2016" version="1" check="at least one" comment="/usr/bin/pnmarith is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1233"/>
      <state state_ref="oval:org.mitre.oval:ste:1868"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2015" version="1" check="at least one" comment="/usr/bin/pnmarith is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1233"/>
      <state state_ref="oval:org.mitre.oval:ste:1867"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2014" version="1" check="at least one" comment="/usr/bin/pnmarith is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1233"/>
      <state state_ref="oval:org.mitre.oval:ste:1866"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2013" version="1" check="at least one" comment="/usr/bin/pnmcat is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1232"/>
      <state state_ref="oval:org.mitre.oval:ste:1865"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2012" version="1" check="at least one" comment="/usr/bin/pnmcat is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1232"/>
      <state state_ref="oval:org.mitre.oval:ste:1864"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2011" version="1" check="at least one" comment="/usr/bin/pnmcat is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1232"/>
      <state state_ref="oval:org.mitre.oval:ste:1863"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2010" version="1" check="at least one" comment="/usr/bin/pnmcolormap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1231"/>
      <state state_ref="oval:org.mitre.oval:ste:1862"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2009" version="1" check="at least one" comment="/usr/bin/pnmcolormap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1231"/>
      <state state_ref="oval:org.mitre.oval:ste:1861"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2008" version="1" check="at least one" comment="/usr/bin/pnmcolormap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1231"/>
      <state state_ref="oval:org.mitre.oval:ste:1860"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2007" version="1" check="at least one" comment="/usr/bin/pnmcomp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1230"/>
      <state state_ref="oval:org.mitre.oval:ste:1859"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2006" version="1" check="at least one" comment="/usr/bin/pnmcomp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1230"/>
      <state state_ref="oval:org.mitre.oval:ste:1858"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2005" version="1" check="at least one" comment="/usr/bin/pnmcomp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1230"/>
      <state state_ref="oval:org.mitre.oval:ste:1857"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2004" version="1" check="at least one" comment="/usr/bin/pnmconvol is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1229"/>
      <state state_ref="oval:org.mitre.oval:ste:1856"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2003" version="1" check="at least one" comment="/usr/bin/pnmconvol is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1229"/>
      <state state_ref="oval:org.mitre.oval:ste:1855"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2002" version="1" check="at least one" comment="/usr/bin/pnmconvol is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1229"/>
      <state state_ref="oval:org.mitre.oval:ste:1854"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2001" version="1" check="at least one" comment="/usr/bin/pnmcrop is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1228"/>
      <state state_ref="oval:org.mitre.oval:ste:1853"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2000" version="1" check="at least one" comment="/usr/bin/pnmcrop is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1228"/>
      <state state_ref="oval:org.mitre.oval:ste:1852"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1999" version="1" check="at least one" comment="/usr/bin/pnmcrop is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1228"/>
      <state state_ref="oval:org.mitre.oval:ste:1851"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1998" version="1" check="at least one" comment="/usr/bin/pnmcut is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1227"/>
      <state state_ref="oval:org.mitre.oval:ste:1850"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1997" version="1" check="at least one" comment="/usr/bin/pnmcut is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1227"/>
      <state state_ref="oval:org.mitre.oval:ste:1849"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1996" version="1" check="at least one" comment="/usr/bin/pnmcut is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1227"/>
      <state state_ref="oval:org.mitre.oval:ste:1848"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1995" version="1" check="at least one" comment="/usr/bin/pnmdepth is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1226"/>
      <state state_ref="oval:org.mitre.oval:ste:1847"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1994" version="1" check="at least one" comment="/usr/bin/pnmdepth is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1226"/>
      <state state_ref="oval:org.mitre.oval:ste:1846"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1993" version="1" check="at least one" comment="/usr/bin/pnmdepth is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1226"/>
      <state state_ref="oval:org.mitre.oval:ste:1845"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1992" version="1" check="at least one" comment="/usr/bin/pnmenlarge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1225"/>
      <state state_ref="oval:org.mitre.oval:ste:1844"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1991" version="1" check="at least one" comment="/usr/bin/pnmenlarge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1225"/>
      <state state_ref="oval:org.mitre.oval:ste:1843"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1990" version="1" check="at least one" comment="/usr/bin/pnmenlarge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1225"/>
      <state state_ref="oval:org.mitre.oval:ste:1842"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1989" version="1" check="at least one" comment="/usr/bin/pnmfile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1224"/>
      <state state_ref="oval:org.mitre.oval:ste:1841"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1988" version="1" check="at least one" comment="/usr/bin/pnmfile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1224"/>
      <state state_ref="oval:org.mitre.oval:ste:1840"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1987" version="1" check="at least one" comment="/usr/bin/pnmfile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1224"/>
      <state state_ref="oval:org.mitre.oval:ste:1839"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1986" version="1" check="at least one" comment="/usr/bin/pnmflip is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1223"/>
      <state state_ref="oval:org.mitre.oval:ste:1838"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1985" version="1" check="at least one" comment="/usr/bin/pnmflip is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1223"/>
      <state state_ref="oval:org.mitre.oval:ste:1837"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1984" version="1" check="at least one" comment="/usr/bin/pnmflip is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1223"/>
      <state state_ref="oval:org.mitre.oval:ste:1836"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1983" version="1" check="at least one" comment="/usr/bin/pnmgamma is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1222"/>
      <state state_ref="oval:org.mitre.oval:ste:1835"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1982" version="1" check="at least one" comment="/usr/bin/pnmgamma is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1222"/>
      <state state_ref="oval:org.mitre.oval:ste:1834"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1981" version="1" check="at least one" comment="/usr/bin/pnmgamma is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1222"/>
      <state state_ref="oval:org.mitre.oval:ste:1833"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1980" version="1" check="at least one" comment="/usr/bin/pnmhisteq is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1221"/>
      <state state_ref="oval:org.mitre.oval:ste:1832"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1979" version="1" check="at least one" comment="/usr/bin/pnmhisteq is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1221"/>
      <state state_ref="oval:org.mitre.oval:ste:1831"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1978" version="1" check="at least one" comment="/usr/bin/pnmhisteq is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1221"/>
      <state state_ref="oval:org.mitre.oval:ste:1830"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1977" version="1" check="at least one" comment="/usr/bin/pnmhistmap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1220"/>
      <state state_ref="oval:org.mitre.oval:ste:1829"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1976" version="1" check="at least one" comment="/usr/bin/pnmhistmap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1220"/>
      <state state_ref="oval:org.mitre.oval:ste:1828"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1975" version="1" check="at least one" comment="/usr/bin/pnmhistmap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1220"/>
      <state state_ref="oval:org.mitre.oval:ste:1827"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1974" version="1" check="at least one" comment="/usr/bin/pnminterp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1219"/>
      <state state_ref="oval:org.mitre.oval:ste:1826"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1973" version="1" check="at least one" comment="/usr/bin/pnminterp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1219"/>
      <state state_ref="oval:org.mitre.oval:ste:1825"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1972" version="1" check="at least one" comment="/usr/bin/pnminterp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1219"/>
      <state state_ref="oval:org.mitre.oval:ste:1824"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1971" version="1" check="at least one" comment="/usr/bin/pnminvert is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1218"/>
      <state state_ref="oval:org.mitre.oval:ste:1823"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1970" version="1" check="at least one" comment="/usr/bin/pnminvert is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1218"/>
      <state state_ref="oval:org.mitre.oval:ste:1822"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1969" version="1" check="at least one" comment="/usr/bin/pnminvert is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1218"/>
      <state state_ref="oval:org.mitre.oval:ste:1821"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1968" version="1" check="at least one" comment="/usr/bin/pnmmontage is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1217"/>
      <state state_ref="oval:org.mitre.oval:ste:1820"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1967" version="1" check="at least one" comment="/usr/bin/pnmmontage is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1217"/>
      <state state_ref="oval:org.mitre.oval:ste:1819"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1966" version="1" check="at least one" comment="/usr/bin/pnmmontage is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1217"/>
      <state state_ref="oval:org.mitre.oval:ste:1818"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1965" version="1" check="at least one" comment="/usr/bin/pnmnlfilt is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1216"/>
      <state state_ref="oval:org.mitre.oval:ste:1817"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1964" version="1" check="at least one" comment="/usr/bin/pnmnlfilt is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1216"/>
      <state state_ref="oval:org.mitre.oval:ste:1816"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1963" version="1" check="at least one" comment="/usr/bin/pnmnlfilt is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1216"/>
      <state state_ref="oval:org.mitre.oval:ste:1815"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1962" version="1" check="at least one" comment="/usr/bin/pnmnoraw is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1215"/>
      <state state_ref="oval:org.mitre.oval:ste:1814"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1961" version="1" check="at least one" comment="/usr/bin/pnmnoraw is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1215"/>
      <state state_ref="oval:org.mitre.oval:ste:1813"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1960" version="1" check="at least one" comment="/usr/bin/pnmnoraw is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1215"/>
      <state state_ref="oval:org.mitre.oval:ste:1812"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1959" version="1" check="at least one" comment="/usr/bin/pnmpad is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1214"/>
      <state state_ref="oval:org.mitre.oval:ste:1811"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1958" version="1" check="at least one" comment="/usr/bin/pnmpad is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1214"/>
      <state state_ref="oval:org.mitre.oval:ste:1810"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1957" version="1" check="at least one" comment="/usr/bin/pnmpad is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1214"/>
      <state state_ref="oval:org.mitre.oval:ste:1809"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1956" version="1" check="at least one" comment="/usr/bin/pnmpaste is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1213"/>
      <state state_ref="oval:org.mitre.oval:ste:1808"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1955" version="1" check="at least one" comment="/usr/bin/pnmpaste is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1213"/>
      <state state_ref="oval:org.mitre.oval:ste:1807"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1954" version="1" check="at least one" comment="/usr/bin/pnmpaste is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1213"/>
      <state state_ref="oval:org.mitre.oval:ste:1806"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1953" version="1" check="at least one" comment="/usr/bin/pnmpsnr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1212"/>
      <state state_ref="oval:org.mitre.oval:ste:1805"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1952" version="1" check="at least one" comment="/usr/bin/pnmpsnr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1212"/>
      <state state_ref="oval:org.mitre.oval:ste:1804"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1951" version="1" check="at least one" comment="/usr/bin/pnmpsnr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1212"/>
      <state state_ref="oval:org.mitre.oval:ste:1803"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1950" version="1" check="at least one" comment="/usr/bin/pnmremap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1211"/>
      <state state_ref="oval:org.mitre.oval:ste:1802"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1949" version="1" check="at least one" comment="/usr/bin/pnmremap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1211"/>
      <state state_ref="oval:org.mitre.oval:ste:1801"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1948" version="1" check="at least one" comment="/usr/bin/pnmremap is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1211"/>
      <state state_ref="oval:org.mitre.oval:ste:1800"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1947" version="1" check="at least one" comment="/usr/bin/pnmrotate is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1210"/>
      <state state_ref="oval:org.mitre.oval:ste:1799"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1946" version="1" check="at least one" comment="/usr/bin/pnmrotate is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1210"/>
      <state state_ref="oval:org.mitre.oval:ste:1798"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1945" version="1" check="at least one" comment="/usr/bin/pnmrotate is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1210"/>
      <state state_ref="oval:org.mitre.oval:ste:1797"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1944" version="1" check="at least one" comment="/usr/bin/pnmscale is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1209"/>
      <state state_ref="oval:org.mitre.oval:ste:1796"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1943" version="1" check="at least one" comment="/usr/bin/pnmscale is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1209"/>
      <state state_ref="oval:org.mitre.oval:ste:1795"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1942" version="1" check="at least one" comment="/usr/bin/pnmscale is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1209"/>
      <state state_ref="oval:org.mitre.oval:ste:1794"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1941" version="1" check="at least one" comment="/usr/bin/ppmtopict is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1208"/>
      <state state_ref="oval:org.mitre.oval:ste:1793"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1940" version="1" check="at least one" comment="/usr/bin/ppmtopict is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1208"/>
      <state state_ref="oval:org.mitre.oval:ste:1792"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1939" version="1" check="at least one" comment="/usr/bin/ppmtopict is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1208"/>
      <state state_ref="oval:org.mitre.oval:ste:1791"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1938" version="1" check="at least one" comment="/usr/bin/ppmtopj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1207"/>
      <state state_ref="oval:org.mitre.oval:ste:1790"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1937" version="1" check="at least one" comment="/usr/bin/ppmtopj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1207"/>
      <state state_ref="oval:org.mitre.oval:ste:1789"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1936" version="1" check="at least one" comment="/usr/bin/ppmtopj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1207"/>
      <state state_ref="oval:org.mitre.oval:ste:1788"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1935" version="1" check="at least one" comment="/usr/bin/ppmtopjxl is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1206"/>
      <state state_ref="oval:org.mitre.oval:ste:1787"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1934" version="1" check="at least one" comment="/usr/bin/ppmtopjxl is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1206"/>
      <state state_ref="oval:org.mitre.oval:ste:1786"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1933" version="1" check="at least one" comment="/usr/bin/ppmtopjxl is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1206"/>
      <state state_ref="oval:org.mitre.oval:ste:1785"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1932" version="1" check="at least one" comment="/usr/bin/ppmtopuzz is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1205"/>
      <state state_ref="oval:org.mitre.oval:ste:1784"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1931" version="1" check="at least one" comment="/usr/bin/ppmtopuzz is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1205"/>
      <state state_ref="oval:org.mitre.oval:ste:1783"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1930" version="1" check="at least one" comment="/usr/bin/ppmtopuzz is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1205"/>
      <state state_ref="oval:org.mitre.oval:ste:1782"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1929" version="1" check="at least one" comment="/usr/bin/ppmtorgb3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1204"/>
      <state state_ref="oval:org.mitre.oval:ste:1781"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1928" version="1" check="at least one" comment="/usr/bin/ppmtorgb3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1204"/>
      <state state_ref="oval:org.mitre.oval:ste:1780"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1927" version="1" check="at least one" comment="/usr/bin/ppmtorgb3 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1204"/>
      <state state_ref="oval:org.mitre.oval:ste:1779"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1926" version="1" check="at least one" comment="/usr/bin/ppmtosixel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1203"/>
      <state state_ref="oval:org.mitre.oval:ste:1778"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1925" version="1" check="at least one" comment="/usr/bin/ppmtosixel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1203"/>
      <state state_ref="oval:org.mitre.oval:ste:1777"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1924" version="1" check="at least one" comment="/usr/bin/ppmtosixel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1203"/>
      <state state_ref="oval:org.mitre.oval:ste:1776"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1923" version="1" check="at least one" comment="/usr/bin/ppmtotga is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1202"/>
      <state state_ref="oval:org.mitre.oval:ste:1775"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1922" version="1" check="at least one" comment="/usr/bin/ppmtotga is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1202"/>
      <state state_ref="oval:org.mitre.oval:ste:1774"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1921" version="1" check="at least one" comment="/usr/bin/ppmtotga is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1202"/>
      <state state_ref="oval:org.mitre.oval:ste:1773"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1920" version="1" check="at least one" comment="/usr/bin/ppmtouil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1201"/>
      <state state_ref="oval:org.mitre.oval:ste:1772"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1919" version="1" check="at least one" comment="/usr/bin/ppmtouil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1201"/>
      <state state_ref="oval:org.mitre.oval:ste:1771"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1918" version="1" check="at least one" comment="/usr/bin/ppmtouil is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1201"/>
      <state state_ref="oval:org.mitre.oval:ste:1770"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1917" version="1" check="at least one" comment="/usr/bin/ppmtowinicon is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1200"/>
      <state state_ref="oval:org.mitre.oval:ste:1769"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1916" version="1" check="at least one" comment="/usr/bin/ppmtowinicon is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1200"/>
      <state state_ref="oval:org.mitre.oval:ste:1768"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1915" version="1" check="at least one" comment="/usr/bin/ppmtowinicon is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1200"/>
      <state state_ref="oval:org.mitre.oval:ste:1767"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1914" version="1" check="at least one" comment="/usr/bin/ppmtoxpm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1199"/>
      <state state_ref="oval:org.mitre.oval:ste:1766"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1913" version="1" check="at least one" comment="/usr/bin/ppmtoxpm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1199"/>
      <state state_ref="oval:org.mitre.oval:ste:1765"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1912" version="1" check="at least one" comment="/usr/bin/ppmtoxpm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1199"/>
      <state state_ref="oval:org.mitre.oval:ste:1764"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1911" version="1" check="at least one" comment="/usr/bin/ppmtoyuv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1198"/>
      <state state_ref="oval:org.mitre.oval:ste:1763"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1910" version="1" check="at least one" comment="/usr/bin/ppmtoyuv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1198"/>
      <state state_ref="oval:org.mitre.oval:ste:1762"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1909" version="1" check="at least one" comment="/usr/bin/ppmtoyuv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1198"/>
      <state state_ref="oval:org.mitre.oval:ste:1761"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1908" version="1" check="at least one" comment="/usr/bin/ppmtoyuvsplit is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1197"/>
      <state state_ref="oval:org.mitre.oval:ste:1760"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1907" version="1" check="at least one" comment="/usr/bin/ppmtoyuvsplit is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1197"/>
      <state state_ref="oval:org.mitre.oval:ste:1759"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1906" version="1" check="at least one" comment="/usr/bin/ppmtoyuvsplit is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1197"/>
      <state state_ref="oval:org.mitre.oval:ste:1758"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1905" version="1" check="at least one" comment="/usr/bin/ppmtv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1196"/>
      <state state_ref="oval:org.mitre.oval:ste:1757"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1904" version="1" check="at least one" comment="/usr/bin/ppmtv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1196"/>
      <state state_ref="oval:org.mitre.oval:ste:1756"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1903" version="1" check="at least one" comment="/usr/bin/ppmtv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1196"/>
      <state state_ref="oval:org.mitre.oval:ste:1755"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1902" version="1" check="at least one" comment="/usr/bin/psidtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1195"/>
      <state state_ref="oval:org.mitre.oval:ste:1754"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1901" version="1" check="at least one" comment="/usr/bin/psidtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1195"/>
      <state state_ref="oval:org.mitre.oval:ste:1753"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1900" version="1" check="at least one" comment="/usr/bin/psidtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1195"/>
      <state state_ref="oval:org.mitre.oval:ste:1752"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1899" version="1" check="at least one" comment="/usr/bin/pstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1194"/>
      <state state_ref="oval:org.mitre.oval:ste:1751"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1898" version="1" check="at least one" comment="/usr/bin/pstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1194"/>
      <state state_ref="oval:org.mitre.oval:ste:1750"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1897" version="1" check="at least one" comment="/usr/bin/pstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1194"/>
      <state state_ref="oval:org.mitre.oval:ste:1749"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1896" version="1" check="at least one" comment="/usr/bin/qrttoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1193"/>
      <state state_ref="oval:org.mitre.oval:ste:1748"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1895" version="1" check="at least one" comment="/usr/bin/qrttoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1193"/>
      <state state_ref="oval:org.mitre.oval:ste:1747"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1894" version="1" check="at least one" comment="/usr/bin/qrttoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1193"/>
      <state state_ref="oval:org.mitre.oval:ste:1746"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1893" version="1" check="at least one" comment="/usr/bin/rasttopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1192"/>
      <state state_ref="oval:org.mitre.oval:ste:1745"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1892" version="1" check="at least one" comment="/usr/bin/rasttopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1192"/>
      <state state_ref="oval:org.mitre.oval:ste:1744"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1891" version="1" check="at least one" comment="/usr/bin/rasttopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1192"/>
      <state state_ref="oval:org.mitre.oval:ste:1743"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1890" version="1" check="at least one" comment="/usr/bin/rawtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1191"/>
      <state state_ref="oval:org.mitre.oval:ste:1742"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1889" version="1" check="at least one" comment="/usr/bin/rawtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1191"/>
      <state state_ref="oval:org.mitre.oval:ste:1741"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1888" version="1" check="at least one" comment="/usr/bin/rawtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1191"/>
      <state state_ref="oval:org.mitre.oval:ste:1740"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1887" version="1" check="at least one" comment="/usr/bin/rawtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1190"/>
      <state state_ref="oval:org.mitre.oval:ste:1739"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1886" version="1" check="at least one" comment="/usr/bin/rawtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1190"/>
      <state state_ref="oval:org.mitre.oval:ste:1738"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1885" version="1" check="at least one" comment="/usr/bin/rawtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1190"/>
      <state state_ref="oval:org.mitre.oval:ste:1737"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1884" version="1" check="at least one" comment="/usr/bin/rgb3toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1189"/>
      <state state_ref="oval:org.mitre.oval:ste:1736"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1883" version="1" check="at least one" comment="/usr/bin/rgb3toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1189"/>
      <state state_ref="oval:org.mitre.oval:ste:1735"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1882" version="1" check="at least one" comment="/usr/bin/rgb3toppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1189"/>
      <state state_ref="oval:org.mitre.oval:ste:1734"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1881" version="1" check="at least one" comment="/usr/bin/rletopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1188"/>
      <state state_ref="oval:org.mitre.oval:ste:1733"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1880" version="1" check="at least one" comment="/usr/bin/rletopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1188"/>
      <state state_ref="oval:org.mitre.oval:ste:1732"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1879" version="1" check="at least one" comment="/usr/bin/rletopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1188"/>
      <state state_ref="oval:org.mitre.oval:ste:1731"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1878" version="1" check="at least one" comment="/usr/bin/sbigtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1187"/>
      <state state_ref="oval:org.mitre.oval:ste:1730"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1877" version="1" check="at least one" comment="/usr/bin/sbigtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1187"/>
      <state state_ref="oval:org.mitre.oval:ste:1729"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1876" version="1" check="at least one" comment="/usr/bin/sbigtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1187"/>
      <state state_ref="oval:org.mitre.oval:ste:1728"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1875" version="1" check="at least one" comment="/usr/bin/sgitopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1186"/>
      <state state_ref="oval:org.mitre.oval:ste:1727"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1874" version="1" check="at least one" comment="/usr/bin/sgitopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1186"/>
      <state state_ref="oval:org.mitre.oval:ste:1726"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1873" version="1" check="at least one" comment="/usr/bin/sgitopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1186"/>
      <state state_ref="oval:org.mitre.oval:ste:1725"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1872" version="1" check="at least one" comment="/usr/bin/sirtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1185"/>
      <state state_ref="oval:org.mitre.oval:ste:1724"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1871" version="1" check="at least one" comment="/usr/bin/sirtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1185"/>
      <state state_ref="oval:org.mitre.oval:ste:1723"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1870" version="1" check="at least one" comment="/usr/bin/sirtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1185"/>
      <state state_ref="oval:org.mitre.oval:ste:1722"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1869" version="1" check="at least one" comment="/usr/bin/sldtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1184"/>
      <state state_ref="oval:org.mitre.oval:ste:1721"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1868" version="1" check="at least one" comment="/usr/bin/sldtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1184"/>
      <state state_ref="oval:org.mitre.oval:ste:1720"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1867" version="1" check="at least one" comment="/usr/bin/sldtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1184"/>
      <state state_ref="oval:org.mitre.oval:ste:1719"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1866" version="1" check="at least one" comment="/usr/bin/spctoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1183"/>
      <state state_ref="oval:org.mitre.oval:ste:1718"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1865" version="1" check="at least one" comment="/usr/bin/spctoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1183"/>
      <state state_ref="oval:org.mitre.oval:ste:1717"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1864" version="1" check="at least one" comment="/usr/bin/spctoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1183"/>
      <state state_ref="oval:org.mitre.oval:ste:1716"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1863" version="1" check="at least one" comment="/usr/bin/spottopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1182"/>
      <state state_ref="oval:org.mitre.oval:ste:1715"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1862" version="1" check="at least one" comment="/usr/bin/spottopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1182"/>
      <state state_ref="oval:org.mitre.oval:ste:1714"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1861" version="1" check="at least one" comment="/usr/bin/spottopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1182"/>
      <state state_ref="oval:org.mitre.oval:ste:1713"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1860" version="1" check="at least one" comment="/usr/bin/sputoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1181"/>
      <state state_ref="oval:org.mitre.oval:ste:1712"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1859" version="1" check="at least one" comment="/usr/bin/sputoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1181"/>
      <state state_ref="oval:org.mitre.oval:ste:1711"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1858" version="1" check="at least one" comment="/usr/bin/sputoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1181"/>
      <state state_ref="oval:org.mitre.oval:ste:1710"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1857" version="1" check="at least one" comment="/usr/bin/tgatoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1180"/>
      <state state_ref="oval:org.mitre.oval:ste:1709"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1856" version="1" check="at least one" comment="/usr/bin/tgatoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1180"/>
      <state state_ref="oval:org.mitre.oval:ste:1708"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1855" version="1" check="at least one" comment="/usr/bin/tgatoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1180"/>
      <state state_ref="oval:org.mitre.oval:ste:1707"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1854" version="1" check="at least one" comment="/usr/bin/thinkjettopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1179"/>
      <state state_ref="oval:org.mitre.oval:ste:1706"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1853" version="1" check="at least one" comment="/usr/bin/thinkjettopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1179"/>
      <state state_ref="oval:org.mitre.oval:ste:1705"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1852" version="1" check="at least one" comment="/usr/bin/thinkjettopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1179"/>
      <state state_ref="oval:org.mitre.oval:ste:1704"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1851" version="1" check="at least one" comment="/usr/bin/tifftopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1178"/>
      <state state_ref="oval:org.mitre.oval:ste:1703"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1850" version="1" check="at least one" comment="/usr/bin/tifftopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1178"/>
      <state state_ref="oval:org.mitre.oval:ste:1702"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1849" version="1" check="at least one" comment="/usr/bin/tifftopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1178"/>
      <state state_ref="oval:org.mitre.oval:ste:1701"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1848" version="1" check="at least one" comment="/usr/bin/wbmptopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1177"/>
      <state state_ref="oval:org.mitre.oval:ste:1700"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1847" version="1" check="at least one" comment="/usr/bin/wbmptopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1177"/>
      <state state_ref="oval:org.mitre.oval:ste:1699"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1846" version="1" check="at least one" comment="/usr/bin/wbmptopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1177"/>
      <state state_ref="oval:org.mitre.oval:ste:1698"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1845" version="1" check="at least one" comment="/usr/bin/winicontoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1176"/>
      <state state_ref="oval:org.mitre.oval:ste:1697"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1844" version="1" check="at least one" comment="/usr/bin/winicontoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1176"/>
      <state state_ref="oval:org.mitre.oval:ste:1696"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1843" version="1" check="at least one" comment="/usr/bin/winicontoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1176"/>
      <state state_ref="oval:org.mitre.oval:ste:1695"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1842" version="1" check="at least one" comment="/usr/bin/xbmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1175"/>
      <state state_ref="oval:org.mitre.oval:ste:1694"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1841" version="1" check="at least one" comment="/usr/bin/xbmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1175"/>
      <state state_ref="oval:org.mitre.oval:ste:1693"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1840" version="1" check="at least one" comment="/usr/bin/xbmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1175"/>
      <state state_ref="oval:org.mitre.oval:ste:1692"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1839" version="1" check="at least one" comment="/usr/bin/ximtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1174"/>
      <state state_ref="oval:org.mitre.oval:ste:1691"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1838" version="1" check="at least one" comment="/usr/bin/ximtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1174"/>
      <state state_ref="oval:org.mitre.oval:ste:1690"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1837" version="1" check="at least one" comment="/usr/bin/ximtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1174"/>
      <state state_ref="oval:org.mitre.oval:ste:1689"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1836" version="1" check="at least one" comment="/usr/bin/xpmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1173"/>
      <state state_ref="oval:org.mitre.oval:ste:1688"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1835" version="1" check="at least one" comment="/usr/bin/xpmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1173"/>
      <state state_ref="oval:org.mitre.oval:ste:1687"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1834" version="1" check="at least one" comment="/usr/bin/xpmtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1173"/>
      <state state_ref="oval:org.mitre.oval:ste:1686"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1833" version="1" check="at least one" comment="/usr/bin/xvminitoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1172"/>
      <state state_ref="oval:org.mitre.oval:ste:1685"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1832" version="1" check="at least one" comment="/usr/bin/xvminitoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1172"/>
      <state state_ref="oval:org.mitre.oval:ste:1684"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1831" version="1" check="at least one" comment="/usr/bin/xvminitoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1172"/>
      <state state_ref="oval:org.mitre.oval:ste:1683"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1830" version="1" check="at least one" comment="/usr/bin/xwdtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1171"/>
      <state state_ref="oval:org.mitre.oval:ste:1682"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1829" version="1" check="at least one" comment="/usr/bin/xwdtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1171"/>
      <state state_ref="oval:org.mitre.oval:ste:1681"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1828" version="1" check="at least one" comment="/usr/bin/xwdtopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1171"/>
      <state state_ref="oval:org.mitre.oval:ste:1680"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1827" version="1" check="at least one" comment="/usr/bin/ybmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1170"/>
      <state state_ref="oval:org.mitre.oval:ste:1679"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1826" version="1" check="at least one" comment="/usr/bin/ybmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1170"/>
      <state state_ref="oval:org.mitre.oval:ste:1678"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1825" version="1" check="at least one" comment="/usr/bin/ybmtopbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1170"/>
      <state state_ref="oval:org.mitre.oval:ste:1677"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1824" version="1" check="at least one" comment="/usr/bin/yuvsplittoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1169"/>
      <state state_ref="oval:org.mitre.oval:ste:1676"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1823" version="1" check="at least one" comment="/usr/bin/yuvsplittoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1169"/>
      <state state_ref="oval:org.mitre.oval:ste:1675"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1822" version="1" check="at least one" comment="/usr/bin/yuvsplittoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1169"/>
      <state state_ref="oval:org.mitre.oval:ste:1674"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1821" version="1" check="at least one" comment="/usr/bin/yuvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1168"/>
      <state state_ref="oval:org.mitre.oval:ste:1673"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1820" version="1" check="at least one" comment="/usr/bin/yuvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1168"/>
      <state state_ref="oval:org.mitre.oval:ste:1672"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1819" version="1" check="at least one" comment="/usr/bin/yuvtoppm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1168"/>
      <state state_ref="oval:org.mitre.oval:ste:1671"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1818" version="1" check="at least one" comment="/usr/bin/zeisstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1167"/>
      <state state_ref="oval:org.mitre.oval:ste:1670"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1817" version="1" check="at least one" comment="/usr/bin/zeisstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1167"/>
      <state state_ref="oval:org.mitre.oval:ste:1669"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1816" version="1" check="at least one" comment="/usr/bin/zeisstopnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1167"/>
      <state state_ref="oval:org.mitre.oval:ste:1668"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1815" version="1" check="at least one" comment="/usr/bin/pnmscalefixed is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1166"/>
      <state state_ref="oval:org.mitre.oval:ste:1667"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1814" version="1" check="at least one" comment="/usr/bin/pnmscalefixed is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1166"/>
      <state state_ref="oval:org.mitre.oval:ste:1666"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1813" version="1" check="at least one" comment="/usr/bin/pnmscalefixed is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1166"/>
      <state state_ref="oval:org.mitre.oval:ste:1665"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1812" version="1" check="at least one" comment="/usr/bin/pnmshear is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1165"/>
      <state state_ref="oval:org.mitre.oval:ste:1664"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1811" version="1" check="at least one" comment="/usr/bin/pnmshear is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1165"/>
      <state state_ref="oval:org.mitre.oval:ste:1663"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1810" version="1" check="at least one" comment="/usr/bin/pnmshear is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1165"/>
      <state state_ref="oval:org.mitre.oval:ste:1662"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1809" version="1" check="at least one" comment="/usr/bin/pnmsmooth is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1164"/>
      <state state_ref="oval:org.mitre.oval:ste:1661"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1808" version="1" check="at least one" comment="/usr/bin/pnmsmooth is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1164"/>
      <state state_ref="oval:org.mitre.oval:ste:1660"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1807" version="1" check="at least one" comment="/usr/bin/pnmsmooth is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1164"/>
      <state state_ref="oval:org.mitre.oval:ste:1659"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1806" version="1" check="at least one" comment="/usr/bin/pnmsplit is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1163"/>
      <state state_ref="oval:org.mitre.oval:ste:1658"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1805" version="1" check="at least one" comment="/usr/bin/pnmsplit is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1163"/>
      <state state_ref="oval:org.mitre.oval:ste:1657"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1804" version="1" check="at least one" comment="/usr/bin/pnmsplit is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1163"/>
      <state state_ref="oval:org.mitre.oval:ste:1656"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1803" version="1" check="at least one" comment="/usr/bin/pnmtile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1162"/>
      <state state_ref="oval:org.mitre.oval:ste:1655"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1802" version="1" check="at least one" comment="/usr/bin/pnmtile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1162"/>
      <state state_ref="oval:org.mitre.oval:ste:1654"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1801" version="1" check="at least one" comment="/usr/bin/pnmtile is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1162"/>
      <state state_ref="oval:org.mitre.oval:ste:1653"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1800" version="1" check="at least one" comment="/usr/bin/pnmtoddif is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1161"/>
      <state state_ref="oval:org.mitre.oval:ste:1652"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1799" version="1" check="at least one" comment="/usr/bin/pnmtoddif is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1161"/>
      <state state_ref="oval:org.mitre.oval:ste:1651"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1798" version="1" check="at least one" comment="/usr/bin/pnmtoddif is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1161"/>
      <state state_ref="oval:org.mitre.oval:ste:1650"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1797" version="1" check="at least one" comment="/usr/bin/pnmtofiasco is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1160"/>
      <state state_ref="oval:org.mitre.oval:ste:1649"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1796" version="1" check="at least one" comment="/usr/bin/pnmtofiasco is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1160"/>
      <state state_ref="oval:org.mitre.oval:ste:1648"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1795" version="1" check="at least one" comment="/usr/bin/pnmtofiasco is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1160"/>
      <state state_ref="oval:org.mitre.oval:ste:1647"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1794" version="1" check="at least one" comment="/usr/bin/pnmtofits is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1159"/>
      <state state_ref="oval:org.mitre.oval:ste:1646"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1793" version="1" check="at least one" comment="/usr/bin/pnmtofits is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1159"/>
      <state state_ref="oval:org.mitre.oval:ste:1645"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1792" version="1" check="at least one" comment="/usr/bin/pnmtofits is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1159"/>
      <state state_ref="oval:org.mitre.oval:ste:1644"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1791" version="1" check="at least one" comment="/usr/bin/pnmtojpeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1158"/>
      <state state_ref="oval:org.mitre.oval:ste:1643"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1790" version="1" check="at least one" comment="/usr/bin/pnmtojpeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1158"/>
      <state state_ref="oval:org.mitre.oval:ste:1642"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1789" version="1" check="at least one" comment="/usr/bin/pnmtojpeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1158"/>
      <state state_ref="oval:org.mitre.oval:ste:1641"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1788" version="1" check="at least one" comment="/usr/bin/pnmtopalm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1157"/>
      <state state_ref="oval:org.mitre.oval:ste:1640"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1787" version="1" check="at least one" comment="/usr/bin/pnmtopalm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1157"/>
      <state state_ref="oval:org.mitre.oval:ste:1639"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1786" version="1" check="at least one" comment="/usr/bin/pnmtopalm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1157"/>
      <state state_ref="oval:org.mitre.oval:ste:1638"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1785" version="1" check="at least one" comment="/usr/bin/pnmtoplainpnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1156"/>
      <state state_ref="oval:org.mitre.oval:ste:1637"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1784" version="1" check="at least one" comment="/usr/bin/pnmtoplainpnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1156"/>
      <state state_ref="oval:org.mitre.oval:ste:1636"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1783" version="1" check="at least one" comment="/usr/bin/pnmtoplainpnm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1156"/>
      <state state_ref="oval:org.mitre.oval:ste:1635"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1782" version="1" check="at least one" comment="/usr/bin/pnmtopng is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1155"/>
      <state state_ref="oval:org.mitre.oval:ste:1634"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1781" version="1" check="at least one" comment="/usr/bin/pnmtopng is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1155"/>
      <state state_ref="oval:org.mitre.oval:ste:1633"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1780" version="1" check="at least one" comment="/usr/bin/pnmtopng is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1155"/>
      <state state_ref="oval:org.mitre.oval:ste:1632"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1779" version="1" check="at least one" comment="/usr/bin/pnmtops is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1154"/>
      <state state_ref="oval:org.mitre.oval:ste:1631"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1778" version="1" check="at least one" comment="/usr/bin/pnmtops is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1154"/>
      <state state_ref="oval:org.mitre.oval:ste:1630"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1777" version="1" check="at least one" comment="/usr/bin/pnmtops is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1154"/>
      <state state_ref="oval:org.mitre.oval:ste:1629"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1776" version="1" check="at least one" comment="/usr/bin/pnmtorast is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1153"/>
      <state state_ref="oval:org.mitre.oval:ste:1628"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1775" version="1" check="at least one" comment="/usr/bin/pnmtorast is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1153"/>
      <state state_ref="oval:org.mitre.oval:ste:1627"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1774" version="1" check="at least one" comment="/usr/bin/pnmtorast is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1153"/>
      <state state_ref="oval:org.mitre.oval:ste:1626"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1773" version="1" check="at least one" comment="/usr/bin/pnmtorle is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1152"/>
      <state state_ref="oval:org.mitre.oval:ste:1625"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1772" version="1" check="at least one" comment="/usr/bin/pnmtorle is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1152"/>
      <state state_ref="oval:org.mitre.oval:ste:1624"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1771" version="1" check="at least one" comment="/usr/bin/pnmtorle is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1152"/>
      <state state_ref="oval:org.mitre.oval:ste:1623"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1770" version="1" check="at least one" comment="/usr/bin/pnmtosgi is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1151"/>
      <state state_ref="oval:org.mitre.oval:ste:1622"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1769" version="1" check="at least one" comment="/usr/bin/pnmtosgi is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1151"/>
      <state state_ref="oval:org.mitre.oval:ste:1621"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1768" version="1" check="at least one" comment="/usr/bin/pnmtosgi is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1151"/>
      <state state_ref="oval:org.mitre.oval:ste:1620"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1767" version="1" check="at least one" comment="/usr/bin/pnmtosir is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1150"/>
      <state state_ref="oval:org.mitre.oval:ste:1619"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1766" version="1" check="at least one" comment="/usr/bin/pnmtosir is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1150"/>
      <state state_ref="oval:org.mitre.oval:ste:1618"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1765" version="1" check="at least one" comment="/usr/bin/pnmtosir is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1150"/>
      <state state_ref="oval:org.mitre.oval:ste:1617"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1764" version="1" check="at least one" comment="/usr/bin/pnmtotiff is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1149"/>
      <state state_ref="oval:org.mitre.oval:ste:1616"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1763" version="1" check="at least one" comment="/usr/bin/pnmtotiff is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1149"/>
      <state state_ref="oval:org.mitre.oval:ste:1615"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1762" version="1" check="at least one" comment="/usr/bin/pnmtotiff is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1149"/>
      <state state_ref="oval:org.mitre.oval:ste:1614"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1761" version="1" check="at least one" comment="/usr/bin/pnmtotiffcmyk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1148"/>
      <state state_ref="oval:org.mitre.oval:ste:1613"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1760" version="1" check="at least one" comment="/usr/bin/pnmtotiffcmyk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1148"/>
      <state state_ref="oval:org.mitre.oval:ste:1612"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1759" version="1" check="at least one" comment="/usr/bin/pnmtotiffcmyk is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1148"/>
      <state state_ref="oval:org.mitre.oval:ste:1611"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1758" version="1" check="at least one" comment="/usr/bin/pnmtoxwd is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1147"/>
      <state state_ref="oval:org.mitre.oval:ste:1610"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1757" version="1" check="at least one" comment="/usr/bin/pnmtoxwd is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1147"/>
      <state state_ref="oval:org.mitre.oval:ste:1609"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1756" version="1" check="at least one" comment="/usr/bin/pnmtoxwd is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1147"/>
      <state state_ref="oval:org.mitre.oval:ste:1608"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1755" version="1" check="at least one" comment="/usr/bin/ppm3d is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1146"/>
      <state state_ref="oval:org.mitre.oval:ste:1607"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1754" version="1" check="at least one" comment="/usr/bin/ppm3d is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1146"/>
      <state state_ref="oval:org.mitre.oval:ste:1606"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1753" version="1" check="at least one" comment="/usr/bin/ppm3d is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1146"/>
      <state state_ref="oval:org.mitre.oval:ste:1605"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1752" version="1" check="at least one" comment="/usr/bin/ppmbrighten is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1145"/>
      <state state_ref="oval:org.mitre.oval:ste:1604"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1751" version="1" check="at least one" comment="/usr/bin/ppmbrighten is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1145"/>
      <state state_ref="oval:org.mitre.oval:ste:1603"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1750" version="1" check="at least one" comment="/usr/bin/ppmbrighten is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1145"/>
      <state state_ref="oval:org.mitre.oval:ste:1602"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1749" version="1" check="at least one" comment="/usr/bin/ppmchange is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1144"/>
      <state state_ref="oval:org.mitre.oval:ste:1601"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1748" version="1" check="at least one" comment="/usr/bin/ppmchange is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1144"/>
      <state state_ref="oval:org.mitre.oval:ste:1600"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1747" version="1" check="at least one" comment="/usr/bin/ppmchange is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1144"/>
      <state state_ref="oval:org.mitre.oval:ste:1599"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1746" version="1" check="at least one" comment="/usr/bin/ppmcie is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1143"/>
      <state state_ref="oval:org.mitre.oval:ste:1598"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1745" version="1" check="at least one" comment="/usr/bin/ppmcie is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1143"/>
      <state state_ref="oval:org.mitre.oval:ste:1597"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1744" version="1" check="at least one" comment="/usr/bin/ppmcie is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1143"/>
      <state state_ref="oval:org.mitre.oval:ste:1596"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1743" version="1" check="at least one" comment="/usr/bin/ppmcolormask is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1142"/>
      <state state_ref="oval:org.mitre.oval:ste:1595"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1742" version="1" check="at least one" comment="/usr/bin/ppmcolormask is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1142"/>
      <state state_ref="oval:org.mitre.oval:ste:1594"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1741" version="1" check="at least one" comment="/usr/bin/ppmcolormask is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1142"/>
      <state state_ref="oval:org.mitre.oval:ste:1593"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1740" version="1" check="at least one" comment="/usr/bin/ppmcolors is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1141"/>
      <state state_ref="oval:org.mitre.oval:ste:1592"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1739" version="1" check="at least one" comment="/usr/bin/ppmcolors is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1141"/>
      <state state_ref="oval:org.mitre.oval:ste:1591"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1738" version="1" check="at least one" comment="/usr/bin/ppmcolors is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1141"/>
      <state state_ref="oval:org.mitre.oval:ste:1590"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1737" version="1" check="at least one" comment="/usr/bin/ppmdim is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1140"/>
      <state state_ref="oval:org.mitre.oval:ste:1589"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1736" version="1" check="at least one" comment="/usr/bin/ppmdim is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1140"/>
      <state state_ref="oval:org.mitre.oval:ste:1588"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1735" version="1" check="at least one" comment="/usr/bin/ppmdim is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1140"/>
      <state state_ref="oval:org.mitre.oval:ste:1587"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1734" version="1" check="at least one" comment="/usr/bin/ppmdist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1139"/>
      <state state_ref="oval:org.mitre.oval:ste:1586"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1733" version="1" check="at least one" comment="/usr/bin/ppmdist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1139"/>
      <state state_ref="oval:org.mitre.oval:ste:1585"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1732" version="1" check="at least one" comment="/usr/bin/ppmdist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1139"/>
      <state state_ref="oval:org.mitre.oval:ste:1584"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1731" version="1" check="at least one" comment="/usr/bin/ppmdither is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1138"/>
      <state state_ref="oval:org.mitre.oval:ste:1583"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1730" version="1" check="at least one" comment="/usr/bin/ppmdither is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1138"/>
      <state state_ref="oval:org.mitre.oval:ste:1582"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1729" version="1" check="at least one" comment="/usr/bin/ppmdither is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1138"/>
      <state state_ref="oval:org.mitre.oval:ste:1581"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1728" version="1" check="at least one" comment="/usr/bin/ppmflash is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1137"/>
      <state state_ref="oval:org.mitre.oval:ste:1580"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1727" version="1" check="at least one" comment="/usr/bin/ppmflash is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1137"/>
      <state state_ref="oval:org.mitre.oval:ste:1579"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1726" version="1" check="at least one" comment="/usr/bin/ppmflash is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1137"/>
      <state state_ref="oval:org.mitre.oval:ste:1578"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1725" version="1" check="at least one" comment="/usr/bin/ppmforge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1136"/>
      <state state_ref="oval:org.mitre.oval:ste:1577"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1724" version="1" check="at least one" comment="/usr/bin/ppmforge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1136"/>
      <state state_ref="oval:org.mitre.oval:ste:1576"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1723" version="1" check="at least one" comment="/usr/bin/ppmforge is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1136"/>
      <state state_ref="oval:org.mitre.oval:ste:1575"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1722" version="1" check="at least one" comment="/usr/bin/ppmhist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1135"/>
      <state state_ref="oval:org.mitre.oval:ste:1574"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1721" version="1" check="at least one" comment="/usr/bin/ppmhist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1135"/>
      <state state_ref="oval:org.mitre.oval:ste:1573"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1720" version="1" check="at least one" comment="/usr/bin/ppmhist is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1135"/>
      <state state_ref="oval:org.mitre.oval:ste:1572"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1719" version="1" check="at least one" comment="/usr/bin/ppmlabel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1134"/>
      <state state_ref="oval:org.mitre.oval:ste:1571"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1718" version="1" check="at least one" comment="/usr/bin/ppmlabel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1134"/>
      <state state_ref="oval:org.mitre.oval:ste:1570"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1717" version="1" check="at least one" comment="/usr/bin/ppmlabel is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1134"/>
      <state state_ref="oval:org.mitre.oval:ste:1569"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1716" version="1" check="at least one" comment="/usr/bin/ppmmake is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1133"/>
      <state state_ref="oval:org.mitre.oval:ste:1568"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1715" version="1" check="at least one" comment="/usr/bin/ppmmake is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1133"/>
      <state state_ref="oval:org.mitre.oval:ste:1567"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1714" version="1" check="at least one" comment="/usr/bin/ppmmake is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1133"/>
      <state state_ref="oval:org.mitre.oval:ste:1566"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1713" version="1" check="at least one" comment="/usr/bin/ppmmix is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1132"/>
      <state state_ref="oval:org.mitre.oval:ste:1565"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1712" version="1" check="at least one" comment="/usr/bin/ppmmix is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1132"/>
      <state state_ref="oval:org.mitre.oval:ste:1564"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1711" version="1" check="at least one" comment="/usr/bin/ppmmix is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1132"/>
      <state state_ref="oval:org.mitre.oval:ste:1563"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1710" version="1" check="at least one" comment="/usr/bin/ppmnorm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1131"/>
      <state state_ref="oval:org.mitre.oval:ste:1562"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1709" version="1" check="at least one" comment="/usr/bin/ppmnorm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1131"/>
      <state state_ref="oval:org.mitre.oval:ste:1561"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1708" version="1" check="at least one" comment="/usr/bin/ppmnorm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1131"/>
      <state state_ref="oval:org.mitre.oval:ste:1560"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1707" version="1" check="at least one" comment="/usr/bin/ppmntsc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1130"/>
      <state state_ref="oval:org.mitre.oval:ste:1559"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1706" version="1" check="at least one" comment="/usr/bin/ppmntsc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1130"/>
      <state state_ref="oval:org.mitre.oval:ste:1558"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1705" version="1" check="at least one" comment="/usr/bin/ppmntsc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1130"/>
      <state state_ref="oval:org.mitre.oval:ste:1557"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1704" version="1" check="at least one" comment="/usr/bin/ppmpat is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1129"/>
      <state state_ref="oval:org.mitre.oval:ste:1556"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1703" version="1" check="at least one" comment="/usr/bin/ppmpat is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1129"/>
      <state state_ref="oval:org.mitre.oval:ste:1555"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1702" version="1" check="at least one" comment="/usr/bin/ppmpat is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1129"/>
      <state state_ref="oval:org.mitre.oval:ste:1554"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1701" version="1" check="at least one" comment="/usr/bin/ppmquant is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1128"/>
      <state state_ref="oval:org.mitre.oval:ste:1553"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1700" version="1" check="at least one" comment="/usr/bin/ppmquant is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1128"/>
      <state state_ref="oval:org.mitre.oval:ste:1552"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1699" version="1" check="at least one" comment="/usr/bin/ppmquant is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1128"/>
      <state state_ref="oval:org.mitre.oval:ste:1551"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1698" version="1" check="at least one" comment="/usr/bin/ppmqvga is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1127"/>
      <state state_ref="oval:org.mitre.oval:ste:1550"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1697" version="1" check="at least one" comment="/usr/bin/ppmqvga is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1127"/>
      <state state_ref="oval:org.mitre.oval:ste:1549"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1696" version="1" check="at least one" comment="/usr/bin/ppmqvga is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1127"/>
      <state state_ref="oval:org.mitre.oval:ste:1548"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1695" version="1" check="at least one" comment="/usr/bin/ppmrelief is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1126"/>
      <state state_ref="oval:org.mitre.oval:ste:1547"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1694" version="1" check="at least one" comment="/usr/bin/ppmrelief is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1126"/>
      <state state_ref="oval:org.mitre.oval:ste:1546"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1693" version="1" check="at least one" comment="/usr/bin/ppmrelief is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1126"/>
      <state state_ref="oval:org.mitre.oval:ste:1545"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1692" version="1" check="at least one" comment="/usr/bin/ppmshift is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1125"/>
      <state state_ref="oval:org.mitre.oval:ste:1544"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1691" version="1" check="at least one" comment="/usr/bin/ppmshift is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1125"/>
      <state state_ref="oval:org.mitre.oval:ste:1543"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1690" version="1" check="at least one" comment="/usr/bin/ppmshift is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1125"/>
      <state state_ref="oval:org.mitre.oval:ste:1542"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1689" version="1" check="at least one" comment="/usr/bin/ppmspread is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1124"/>
      <state state_ref="oval:org.mitre.oval:ste:1541"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1688" version="1" check="at least one" comment="/usr/bin/ppmspread is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1124"/>
      <state state_ref="oval:org.mitre.oval:ste:1540"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1687" version="1" check="at least one" comment="/usr/bin/ppmspread is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1124"/>
      <state state_ref="oval:org.mitre.oval:ste:1539"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1686" version="1" check="at least one" comment="/usr/bin/ppmtoacad is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1123"/>
      <state state_ref="oval:org.mitre.oval:ste:1538"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1685" version="1" check="at least one" comment="/usr/bin/ppmtoacad is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1123"/>
      <state state_ref="oval:org.mitre.oval:ste:1537"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1684" version="1" check="at least one" comment="/usr/bin/ppmtoacad is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1123"/>
      <state state_ref="oval:org.mitre.oval:ste:1536"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1683" version="1" check="at least one" comment="/usr/bin/ppmtobmp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1122"/>
      <state state_ref="oval:org.mitre.oval:ste:1535"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1682" version="1" check="at least one" comment="/usr/bin/ppmtobmp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1122"/>
      <state state_ref="oval:org.mitre.oval:ste:1534"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1681" version="1" check="at least one" comment="/usr/bin/ppmtobmp is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1122"/>
      <state state_ref="oval:org.mitre.oval:ste:1533"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1680" version="1" check="at least one" comment="/usr/bin/ppmtoeyuv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1121"/>
      <state state_ref="oval:org.mitre.oval:ste:1532"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1679" version="1" check="at least one" comment="/usr/bin/ppmtoeyuv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1121"/>
      <state state_ref="oval:org.mitre.oval:ste:1531"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1678" version="1" check="at least one" comment="/usr/bin/ppmtoeyuv is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1121"/>
      <state state_ref="oval:org.mitre.oval:ste:1530"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1677" version="1" check="at least one" comment="/usr/bin/ppmtogif is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1120"/>
      <state state_ref="oval:org.mitre.oval:ste:1529"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1676" version="1" check="at least one" comment="/usr/bin/ppmtogif is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1120"/>
      <state state_ref="oval:org.mitre.oval:ste:1528"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1675" version="1" check="at least one" comment="/usr/bin/ppmtogif is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1120"/>
      <state state_ref="oval:org.mitre.oval:ste:1527"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1674" version="1" check="at least one" comment="/usr/bin/ppmtoicr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1119"/>
      <state state_ref="oval:org.mitre.oval:ste:1526"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1673" version="1" check="at least one" comment="/usr/bin/ppmtoicr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1119"/>
      <state state_ref="oval:org.mitre.oval:ste:1525"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1672" version="1" check="at least one" comment="/usr/bin/ppmtoicr is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1119"/>
      <state state_ref="oval:org.mitre.oval:ste:1524"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1671" version="1" check="at least one" comment="/usr/bin/ppmtoilbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1118"/>
      <state state_ref="oval:org.mitre.oval:ste:1523"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1670" version="1" check="at least one" comment="/usr/bin/ppmtoilbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1118"/>
      <state state_ref="oval:org.mitre.oval:ste:1522"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1669" version="1" check="at least one" comment="/usr/bin/ppmtoilbm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1118"/>
      <state state_ref="oval:org.mitre.oval:ste:1521"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1668" version="1" check="at least one" comment="/usr/bin/ppmtojpeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1117"/>
      <state state_ref="oval:org.mitre.oval:ste:1520"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1667" version="1" check="at least one" comment="/usr/bin/ppmtojpeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1117"/>
      <state state_ref="oval:org.mitre.oval:ste:1519"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1666" version="1" check="at least one" comment="/usr/bin/ppmtojpeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1117"/>
      <state state_ref="oval:org.mitre.oval:ste:1518"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1665" version="1" check="at least one" comment="/usr/bin/ppmtoleaf is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1116"/>
      <state state_ref="oval:org.mitre.oval:ste:1517"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1664" version="1" check="at least one" comment="/usr/bin/ppmtoleaf is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1116"/>
      <state state_ref="oval:org.mitre.oval:ste:1516"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1663" version="1" check="at least one" comment="/usr/bin/ppmtoleaf is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1116"/>
      <state state_ref="oval:org.mitre.oval:ste:1515"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1662" version="1" check="at least one" comment="/usr/bin/ppmtolj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1115"/>
      <state state_ref="oval:org.mitre.oval:ste:1514"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1661" version="1" check="at least one" comment="/usr/bin/ppmtolj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1115"/>
      <state state_ref="oval:org.mitre.oval:ste:1513"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1660" version="1" check="at least one" comment="/usr/bin/ppmtolj is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1115"/>
      <state state_ref="oval:org.mitre.oval:ste:1512"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1659" version="1" check="at least one" comment="/usr/bin/ppmtomitsu is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1114"/>
      <state state_ref="oval:org.mitre.oval:ste:1511"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1658" version="1" check="at least one" comment="/usr/bin/ppmtomitsu is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1114"/>
      <state state_ref="oval:org.mitre.oval:ste:1510"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1657" version="1" check="at least one" comment="/usr/bin/ppmtomitsu is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1114"/>
      <state state_ref="oval:org.mitre.oval:ste:1509"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1656" version="1" check="at least one" comment="/usr/bin/ppmtompeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1113"/>
      <state state_ref="oval:org.mitre.oval:ste:1508"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1655" version="1" check="at least one" comment="/usr/bin/ppmtompeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1113"/>
      <state state_ref="oval:org.mitre.oval:ste:1507"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1654" version="1" check="at least one" comment="/usr/bin/ppmtompeg is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1113"/>
      <state state_ref="oval:org.mitre.oval:ste:1506"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1653" version="1" check="at least one" comment="/usr/bin/ppmtoneo is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1112"/>
      <state state_ref="oval:org.mitre.oval:ste:1505"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1652" version="1" check="at least one" comment="/usr/bin/ppmtoneo is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1112"/>
      <state state_ref="oval:org.mitre.oval:ste:1504"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1651" version="1" check="at least one" comment="/usr/bin/ppmtoneo is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1112"/>
      <state state_ref="oval:org.mitre.oval:ste:1503"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1650" version="1" check="at least one" comment="/usr/bin/ppmtopcx is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1111"/>
      <state state_ref="oval:org.mitre.oval:ste:1502"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1649" version="1" check="at least one" comment="/usr/bin/ppmtopcx is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1111"/>
      <state state_ref="oval:org.mitre.oval:ste:1501"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1648" version="1" check="at least one" comment="/usr/bin/ppmtopcx is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1111"/>
      <state state_ref="oval:org.mitre.oval:ste:1500"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1647" version="1" check="at least one" comment="/usr/bin/ppmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1110"/>
      <state state_ref="oval:org.mitre.oval:ste:1499"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1646" version="1" check="at least one" comment="/usr/bin/ppmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1110"/>
      <state state_ref="oval:org.mitre.oval:ste:1498"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1645" version="1" check="at least one" comment="/usr/bin/ppmtopgm is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1110"/>
      <state state_ref="oval:org.mitre.oval:ste:1497"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1644" version="1" check="at least one" comment="/usr/bin/ppmtopi1 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1109"/>
      <state state_ref="oval:org.mitre.oval:ste:1496"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1643" version="1" check="at least one" comment="/usr/bin/ppmtopi1 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1109"/>
      <state state_ref="oval:org.mitre.oval:ste:1495"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1642" version="1" check="at least one" comment="/usr/bin/ppmtopi1 is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1109"/>
      <state state_ref="oval:org.mitre.oval:ste:1494"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1637" version="1" check="at least one" comment="netpbm version is less than 9.24-11.30.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1106"/>
      <state state_ref="oval:org.mitre.oval:ste:1489"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1636" version="1" check="at least one" comment="netpbm-devel version is less than 9.24-11.30.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1105"/>
      <state state_ref="oval:org.mitre.oval:ste:1488"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1635" version="1" check="at least one" comment="netpbm-progs version is less than 9.24-11.30.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1104"/>
      <state state_ref="oval:org.mitre.oval:ste:1487"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1634" version="1" check="at least one" comment="mutt version is less than 1.4.1-3.3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1103"/>
      <state state_ref="oval:org.mitre.oval:ste:1486"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1631" version="1" check="at least one" comment="mailman version is less than 2.1.1-5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1102"/>
      <state state_ref="oval:org.mitre.oval:ste:1483"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:1630" version="1" check="at least one" comment="httpd is listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1101"/>
      <state state_ref="oval:org.mitre.oval:ste:1482"/>
    </inetlisteningservers_test>
    <file_test id="oval:org.mitre.oval:tst:2650" version="1" check="all" comment="/usr/bin/mozilla is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1030"/>
      <state state_ref="oval:org.mitre.oval:ste:2475"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2482" version="1" check="all" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <oval-def:notes>
        <oval-def:note>Multiple RPMs were updated in this release, but all but mozilla-nspr have mozilla-with-their-same-version as an installation dependency.  So, if mozilla is up to date, mozilla-chat, mozilla-devel, ... , mozilla-js-debugger are all up to date.  Mozilla itself requires that mozilla-nspr and mozilla-nss be installed with the same version as itself.  This closes the loop -- if mozilla is up to date, so are the other mozilla-FOO RPMs.</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:1413"/>
      <state state_ref="oval:org.mitre.oval:ste:2326"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1629" version="1" check="at least one" comment="gaim version is less than 0.75-0.9.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1100"/>
      <state state_ref="oval:org.mitre.oval:ste:1481"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1628" version="1" check="at least one" comment="/usr/bin/gaim is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1099"/>
      <state state_ref="oval:org.mitre.oval:ste:1480"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1627" version="1" check="at least one" comment="/usr/bin/gaim is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1099"/>
      <state state_ref="oval:org.mitre.oval:ste:1479"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1626" version="1" check="at least one" comment="/usr/bin/gaim is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1099"/>
      <state state_ref="oval:org.mitre.oval:ste:1478"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1625" version="1" check="at least one" comment="slocate version is less than 2.7-2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1098"/>
      <state state_ref="oval:org.mitre.oval:ste:1477"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1624" version="1" check="at least one" comment="/usr/bin/slocate is setgid" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1097"/>
      <state state_ref="oval:org.mitre.oval:ste:1476"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1623" version="1" check="at least one" comment="/usr/bin/slocate is setgid" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1097"/>
      <state state_ref="oval:org.mitre.oval:ste:1475"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1622" version="1" check="at least one" comment="mc version is less than 4.6.0-7.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1096"/>
      <state state_ref="oval:org.mitre.oval:ste:1474"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1621" version="1" check="at least one" comment="/usr/bin/mc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1095"/>
      <state state_ref="oval:org.mitre.oval:ste:1473"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1620" version="1" check="at least one" comment="/usr/bin/mc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1095"/>
      <state state_ref="oval:org.mitre.oval:ste:1472"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1619" version="1" check="at least one" comment="/usr/bin/mc is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1095"/>
      <state state_ref="oval:org.mitre.oval:ste:1471"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2655" version="1" check="at least one" comment="/usr/bin/konqueror is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1520"/>
      <state state_ref="oval:org.mitre.oval:ste:2480"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2654" version="1" check="at least one" comment="/usr/bin/konqueror is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1520"/>
      <state state_ref="oval:org.mitre.oval:ste:2479"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2653" version="1" check="at least one" comment="/usr/bin/konqueror is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1520"/>
      <state state_ref="oval:org.mitre.oval:ste:2478"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1618" version="1" check="at least one" comment="kdelibs version is less than 3.1-13" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1094"/>
      <state state_ref="oval:org.mitre.oval:ste:1470"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1617" version="1" check="at least one" comment="kernel version is less than 2.4.21-9.0.1.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1093"/>
      <state state_ref="oval:org.mitre.oval:ste:1469"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1616" version="1" check="at least one" comment="kernel-smp version is less than 2.4.21-9.0.1.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1092"/>
      <state state_ref="oval:org.mitre.oval:ste:1468"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1615" version="1" check="at least one" comment="kernel-hugemem version is less than 2.4.21-9.0.1.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1091"/>
      <state state_ref="oval:org.mitre.oval:ste:1467"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2320" version="1" check="at least one" comment="a program is listening on TCP or UDP port 1720" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1337"/>
      <state state_ref="oval:org.mitre.oval:ste:2172"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1614" version="1" check="at least one" comment="pwlib version is less than 1.4.7-7.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1090"/>
      <state state_ref="oval:org.mitre.oval:ste:1466"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2558" version="1" check="at least one" comment="smbd is listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1457"/>
      <state state_ref="oval:org.mitre.oval:ste:2392"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1613" version="1" check="at least one" comment="samba version is less than 3.0.2-6.3E" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1089"/>
      <state state_ref="oval:org.mitre.oval:ste:1465"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1640" version="1" check="at least one" comment="/usr/X11R6/bin/XFree86 is SUID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1107"/>
      <state state_ref="oval:org.mitre.oval:ste:1492"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1639" version="1" check="at least one" comment="/usr/X11R6/bin/XFree86 is SUID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1107"/>
      <state state_ref="oval:org.mitre.oval:ste:1491"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1638" version="1" check="at least one" comment="/usr/X11R6/bin/XFree86 is SUID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1107"/>
      <state state_ref="oval:org.mitre.oval:ste:1490"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1610" version="1" check="at least one" comment="XFree86 version is less than 4.3.0-55.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1086"/>
      <state state_ref="oval:org.mitre.oval:ste:1462"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1606" version="1" check="at least one" comment="kernel version is less than 2.4.20-30.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1082"/>
      <state state_ref="oval:org.mitre.oval:ste:1458"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1605" version="1" check="at least one" comment="kernel-smp version is less than 2.4.20-30.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1081"/>
      <state state_ref="oval:org.mitre.oval:ste:1457"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1604" version="1" check="at least one" comment="kernel-bigmem version is less than 2.4.20-30.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1080"/>
      <state state_ref="oval:org.mitre.oval:ste:1456"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:2637" version="1" check="at least one" comment="/usr/bin/mutt is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1505"/>
      <state state_ref="oval:org.mitre.oval:ste:2464"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2636" version="1" check="at least one" comment="/usr/bin/mutt is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1505"/>
      <state state_ref="oval:org.mitre.oval:ste:2463"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2635" version="1" check="at least one" comment="/usr/bin/mutt is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1505"/>
      <state state_ref="oval:org.mitre.oval:ste:2462"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1603" version="1" check="at least one" comment="mutt version is less than 1.4.1-3.4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1079"/>
      <state state_ref="oval:org.mitre.oval:ste:1455"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1612" version="1" check="at least one" comment="mod_python version is less than 3.0.1-4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1088"/>
      <state state_ref="oval:org.mitre.oval:ste:1464"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1589" version="1" check="at least one" comment="gdk-pixbuf version is less than 0.22.0-6.0.3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1068"/>
      <state state_ref="oval:org.mitre.oval:ste:1443"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1588" version="1" check="at least one" comment="gdk-pixbuf-devel version is less than 0.22.0-6.0.3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1067"/>
      <state state_ref="oval:org.mitre.oval:ste:1442"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1587" version="1" check="at least one" comment="gdk-pixbuf-gnome version is less than 0.22.0-6.0.3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1066"/>
      <state state_ref="oval:org.mitre.oval:ste:1441"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1586" version="1" check="at least one" comment="gdk-pixbuf version is less than 0.22.0-6.1.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1065"/>
      <state state_ref="oval:org.mitre.oval:ste:1440"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1585" version="1" check="at least one" comment="gdk-pixbuf-devel version is less than 0.22.0-6.1.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1064"/>
      <state state_ref="oval:org.mitre.oval:ste:1439"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1584" version="1" check="at least one" comment="gdk-pixbuf-gnome version is less than 0.22.0-6.1.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1063"/>
      <state state_ref="oval:org.mitre.oval:ste:1438"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1579" version="1" check="at least one" comment="sysstat version is less than 4.0.7-4.rhl9.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1061"/>
      <state state_ref="oval:org.mitre.oval:ste:1433"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1583" version="1" check="at least one" comment="tcpdump version is less than 3.7.2-7.9.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1062"/>
      <state state_ref="oval:org.mitre.oval:ste:1437"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1582" version="1" check="at least one" comment="/usr/sbin/tcpdump is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:947"/>
      <state state_ref="oval:org.mitre.oval:ste:1436"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1581" version="1" check="at least one" comment="/usr/sbin/tcpdump is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:947"/>
      <state state_ref="oval:org.mitre.oval:ste:1435"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1580" version="1" check="at least one" comment="/usr/sbin/tcpdump is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:947"/>
      <state state_ref="oval:org.mitre.oval:ste:1434"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1578" version="1" check="at least one" comment="tcpdump version is less than 3.7.2-7.E3.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1060"/>
      <state state_ref="oval:org.mitre.oval:ste:1432"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1577" version="1" check="at least one" comment="cvs version is less than 1.11.2-13" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1059"/>
      <state state_ref="oval:org.mitre.oval:ste:1431"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1575" version="1" check="at least one" comment="ethereal version is less than 0.10.0a-0.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1057"/>
      <state state_ref="oval:org.mitre.oval:ste:1429"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1574" version="1" check="at least one" comment="ethereal-gnome version is less than 0.10.0a-0.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1056"/>
      <state state_ref="oval:org.mitre.oval:ste:1428"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1573" version="1" check="at least one" comment="/usr/bin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1024"/>
      <state state_ref="oval:org.mitre.oval:ste:1427"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1572" version="1" check="at least one" comment="/usr/bin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1024"/>
      <state state_ref="oval:org.mitre.oval:ste:1426"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1571" version="1" check="at least one" comment="/usr/bin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1024"/>
      <state state_ref="oval:org.mitre.oval:ste:1425"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1570" version="1" check="at least one" comment="/usr/sbin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1023"/>
      <state state_ref="oval:org.mitre.oval:ste:1424"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1569" version="1" check="at least one" comment="/usr/sbin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1023"/>
      <state state_ref="oval:org.mitre.oval:ste:1423"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1568" version="1" check="at least one" comment="/usr/sbin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1023"/>
      <state state_ref="oval:org.mitre.oval:ste:1422"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1567" version="1" check="at least one" comment="/usr/sbin/tethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1055"/>
      <state state_ref="oval:org.mitre.oval:ste:1421"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1566" version="1" check="at least one" comment="/usr/sbin/tethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1055"/>
      <state state_ref="oval:org.mitre.oval:ste:1420"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1565" version="1" check="at least one" comment="/usr/sbin/tethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1055"/>
      <state state_ref="oval:org.mitre.oval:ste:1419"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1564" version="1" check="at least one" comment="kdepim version is less than 3.1-6" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1054"/>
      <state state_ref="oval:org.mitre.oval:ste:1418"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1560" version="1" check="at least one" comment="kernel version is less than 2.4.20-28.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1052"/>
      <state state_ref="oval:org.mitre.oval:ste:1414"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1559" version="1" check="at least one" comment="kernel-smp version is less than 2.4.20-28.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1051"/>
      <state state_ref="oval:org.mitre.oval:ste:1413"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1558" version="1" check="at least one" comment="kernel-bigmem version is less than 2.4.20-28.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1050"/>
      <state state_ref="oval:org.mitre.oval:ste:1412"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1557" version="1" check="at least one" comment="nfs-utils version is less than 1.0.6-7.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1049"/>
      <state state_ref="oval:org.mitre.oval:ste:1411"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:1556" version="1" check="at least one" comment="rpc.mountd is listening to the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1048"/>
      <state state_ref="oval:org.mitre.oval:ste:1410"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1555" version="1" check="at least one" comment="sysstat version is less than 4.0.7-4.EL3.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1047"/>
      <state state_ref="oval:org.mitre.oval:ste:1409"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1554" version="1" check="at least one" comment="httpd version is less than 2.0.40-21.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1046"/>
      <state state_ref="oval:org.mitre.oval:ste:1408"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:2851" version="1" check="at least one" comment="httpd.worker is listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1633"/>
      <state state_ref="oval:org.mitre.oval:ste:2669"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1553" version="1" check="at least one" comment="httpd version is less than 2.0.46-26.ent" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1045"/>
      <state state_ref="oval:org.mitre.oval:ste:1407"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1563" version="1" check="at least one" comment="/usr/share/services/kfile_vcf.desktop is readable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1053"/>
      <state state_ref="oval:org.mitre.oval:ste:1417"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1562" version="1" check="at least one" comment="/usr/share/services/kfile_vcf.desktop is readable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1053"/>
      <state state_ref="oval:org.mitre.oval:ste:1416"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1561" version="1" check="at least one" comment="/usr/share/services/kfile_vcf.desktop is readable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1053"/>
      <state state_ref="oval:org.mitre.oval:ste:1415"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1552" version="1" check="at least one" comment="kdepim version is less than 3.1.3-3.3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1044"/>
      <state state_ref="oval:org.mitre.oval:ste:1406"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1576" version="1" check="at least one" comment="/ is world-writable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1058"/>
      <state state_ref="oval:org.mitre.oval:ste:1430"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1551" version="1" check="at least one" comment="cvs version is less than 1.11.2-14" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1043"/>
      <state state_ref="oval:org.mitre.oval:ste:1405"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1539" version="1" check="at least one" comment="mozilla-nss version is less than 1.4.2-0.9.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1032"/>
      <state state_ref="oval:org.mitre.oval:ste:1393"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1538" version="1" check="at least one" comment="mozilla version is less than 1.4.2-0.9.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1031"/>
      <state state_ref="oval:org.mitre.oval:ste:1392"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1537" version="1" check="at least one" comment="/usr/bin/mozilla is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1030"/>
      <state state_ref="oval:org.mitre.oval:ste:1391"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1536" version="1" check="at least one" comment="/usr/bin/mozilla is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1030"/>
      <state state_ref="oval:org.mitre.oval:ste:1390"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1535" version="1" check="at least one" comment="/usr/bin/mozilla is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1030"/>
      <state state_ref="oval:org.mitre.oval:ste:1389"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1609" version="1" check="at least one" comment="libxml2 version is less than 2.5.10-6" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1085"/>
      <state state_ref="oval:org.mitre.oval:ste:1461"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1608" version="1" check="at least one" comment="libxml2-devel version is less than 2.5.10-6" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1084"/>
      <state state_ref="oval:org.mitre.oval:ste:1460"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1607" version="1" check="at least one" comment="libxml2-python version is less than 2.5.10-6" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1083"/>
      <state state_ref="oval:org.mitre.oval:ste:1459"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:1611" version="1" check="at least one" comment="httpd is listening to the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1087"/>
      <state state_ref="oval:org.mitre.oval:ste:1463"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1534" version="1" check="at least one" comment="mod_ssl version is less than 2.0.46-32.ent" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1029"/>
      <state state_ref="oval:org.mitre.oval:ste:1388"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1533" version="1" check="at least one" comment="squid version is less than 2.5STABLE1-3.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1028"/>
      <state state_ref="oval:org.mitre.oval:ste:1387"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2985" version="1" check="at least one" comment="ethereal version is less than 0.9.13-1.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1706"/>
      <state state_ref="oval:org.mitre.oval:ste:2798"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2984" version="1" check="at least one" comment="ethereal-gnome version is less than 0.9.13-1.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1705"/>
      <state state_ref="oval:org.mitre.oval:ste:2797"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1531" version="1" check="at least one" comment="ethereal version is less than 0.10.3-0.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1026"/>
      <state state_ref="oval:org.mitre.oval:ste:1385"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1530" version="1" check="at least one" comment="ethereal-gnome version is less than 0.10.3-0.90.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1025"/>
      <state state_ref="oval:org.mitre.oval:ste:1384"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1505" version="1" check="at least one" comment="ethereal version is less than 0.10.3-0.30E.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1013"/>
      <state state_ref="oval:org.mitre.oval:ste:1360"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1504" version="1" check="at least one" comment="ethereal-gnome version is less than 0.10.3-0.30E.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1012"/>
      <state state_ref="oval:org.mitre.oval:ste:1359"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1468" version="1" check="at least one" comment="mozilla-nss version is less than 1.4.2-3.0.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:996"/>
      <state state_ref="oval:org.mitre.oval:ste:1326"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1436" version="1" check="at least one" comment="kernel version is less than 2.4.21-9.0.3.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:980"/>
      <state state_ref="oval:org.mitre.oval:ste:1295"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1435" version="1" check="at least one" comment="kernel-smp version is less than 2.4.21-9.0.3.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:979"/>
      <state state_ref="oval:org.mitre.oval:ste:1294"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1434" version="1" check="at least one" comment="kernel-hugemem version is less than 2.4.21-9.0.3.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:978"/>
      <state state_ref="oval:org.mitre.oval:ste:1293"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:1532" version="1" check="at least one" comment="squid is listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1027"/>
      <state state_ref="oval:org.mitre.oval:ste:1386"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1431" version="1" check="at least one" comment="squid version is less than 2.5.STABLE3-5.3E" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:976"/>
      <state state_ref="oval:org.mitre.oval:ste:1290"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1426" version="1" check="at least one" comment="kdelibs version is less than 3.1.3-6.4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:972"/>
      <state state_ref="oval:org.mitre.oval:ste:1285"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1425" version="1" check="at least one" comment="/usr/bin/telnet is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:814"/>
      <state state_ref="oval:org.mitre.oval:ste:1284"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1424" version="1" check="at least one" comment="/usr/bin/telnet is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:814"/>
      <state state_ref="oval:org.mitre.oval:ste:1283"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1423" version="1" check="at least one" comment="/usr/bin/telnet is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:814"/>
      <state state_ref="oval:org.mitre.oval:ste:1282"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1422" version="1" check="at least one" comment="/usr/kerberos/bin/telnet is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:971"/>
      <state state_ref="oval:org.mitre.oval:ste:1281"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1421" version="1" check="at least one" comment="/usr/kerberos/bin/telnet is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:971"/>
      <state state_ref="oval:org.mitre.oval:ste:1280"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1420" version="1" check="at least one" comment="/usr/kerberos/bin/telnet is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:971"/>
      <state state_ref="oval:org.mitre.oval:ste:1279"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1419" version="1" check="at least one" comment="/usr/bin/rlogin is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:970"/>
      <state state_ref="oval:org.mitre.oval:ste:1278"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1418" version="1" check="at least one" comment="/usr/bin/rlogin is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:970"/>
      <state state_ref="oval:org.mitre.oval:ste:1277"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1417" version="1" check="at least one" comment="/usr/bin/rlogin is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:970"/>
      <state state_ref="oval:org.mitre.oval:ste:1276"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1416" version="1" check="at least one" comment="/usr/kerberos/bin/rlogin is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:969"/>
      <state state_ref="oval:org.mitre.oval:ste:1275"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1415" version="1" check="at least one" comment="/usr/kerberos/bin/rlogin is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:969"/>
      <state state_ref="oval:org.mitre.oval:ste:1274"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1414" version="1" check="at least one" comment="/usr/kerberos/bin/rlogin is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:969"/>
      <state state_ref="oval:org.mitre.oval:ste:1273"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1413" version="1" check="at least one" comment="/usr/bin/ssh is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:968"/>
      <state state_ref="oval:org.mitre.oval:ste:1272"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1412" version="1" check="at least one" comment="/usr/bin/ssh is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:968"/>
      <state state_ref="oval:org.mitre.oval:ste:1271"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1411" version="1" check="at least one" comment="/usr/bin/ssh is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:968"/>
      <state state_ref="oval:org.mitre.oval:ste:1270"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1410" version="1" check="at least one" comment="/usr/bin/kmail is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:967"/>
      <state state_ref="oval:org.mitre.oval:ste:1269"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1409" version="1" check="at least one" comment="/usr/bin/kmail is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:967"/>
      <state state_ref="oval:org.mitre.oval:ste:1268"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1408" version="1" check="at least one" comment="/usr/bin/kmail is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:967"/>
      <state state_ref="oval:org.mitre.oval:ste:1267"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1397" version="1" check="all" comment="ImageMagick RPM earlier than 0:5.5.6-15" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <oval-def:notes>
        <oval-def:note>The ImageMagick-* RPMs all require that the main ImageMagick RPM have the same version and release number.</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:963"/>
      <state state_ref="oval:org.mitre.oval:ste:1259"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1389" version="1" check="at least one" comment="rsync version is less than 2.5.7-4.3E" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:959"/>
      <state state_ref="oval:org.mitre.oval:ste:1251"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1382" version="1" check="at least one" comment="cvs version is less than 1.11.2-22" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:954"/>
      <state state_ref="oval:org.mitre.oval:ste:1244"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1378" version="1" check="at least one" comment="libpng version is less than 1.2.2-21" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:952"/>
      <state state_ref="oval:org.mitre.oval:ste:1240"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1377" version="1" check="at least one" comment="libpng-devel version is less than 1.2.2-21" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:951"/>
      <state state_ref="oval:org.mitre.oval:ste:1239"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1376" version="1" check="at least one" comment="libpng10 version is less than 1.0.13-12" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:950"/>
      <state state_ref="oval:org.mitre.oval:ste:1238"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1375" version="1" check="at least one" comment="libpng10-devel version is less than 1.0.13-12" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:949"/>
      <state state_ref="oval:org.mitre.oval:ste:1237"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2483" version="1" check="at least one" comment="Red Hat Enterprise 3 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1414"/>
      <state state_ref="oval:org.mitre.oval:ste:2327"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1374" version="1" check="at least one" comment="tcpdump version is less than 3.7.2-7.E3.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:948"/>
      <state state_ref="oval:org.mitre.oval:ste:1236"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1373" version="1" check="at least one" comment="/usr/sbin/tcpdump is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:947"/>
      <state state_ref="oval:org.mitre.oval:ste:1235"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1372" version="1" check="at least one" comment="/usr/sbin/tcpdump is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:947"/>
      <state state_ref="oval:org.mitre.oval:ste:1234"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1371" version="1" check="at least one" comment="/usr/sbin/tcpdump is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:947"/>
      <state state_ref="oval:org.mitre.oval:ste:1233"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1370" version="1" check="at least one" comment="lha version is less than 1.14i-10.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:946"/>
      <state state_ref="oval:org.mitre.oval:ste:1232"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1369" version="1" check="at least one" comment="/usr/bin/lha is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:945"/>
      <state state_ref="oval:org.mitre.oval:ste:1231"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1368" version="1" check="at least one" comment="/usr/bin/lha is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:945"/>
      <state state_ref="oval:org.mitre.oval:ste:1230"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1367" version="1" check="at least one" comment="/usr/bin/lha is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:945"/>
      <state state_ref="oval:org.mitre.oval:ste:1229"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1366" version="1" check="at least one" comment="utempter version is less than 0.5.5-1.3EL.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:944"/>
      <state state_ref="oval:org.mitre.oval:ste:1228"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1365" version="1" check="at least one" comment="/usr/sbin/utempter is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:943"/>
      <state state_ref="oval:org.mitre.oval:ste:1227"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1364" version="1" check="at least one" comment="/usr/sbin/utempter is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:943"/>
      <state state_ref="oval:org.mitre.oval:ste:1226"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1363" version="1" check="at least one" comment="/usr/sbin/utempter is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:943"/>
      <state state_ref="oval:org.mitre.oval:ste:1225"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1362" version="1" check="at least one" comment="/usr/sbin/utempter is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:943"/>
      <state state_ref="oval:org.mitre.oval:ste:1224"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1361" version="1" check="at least one" comment="squid version is less than 2.5.STABLE3-6.3E" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:942"/>
      <state state_ref="oval:org.mitre.oval:ste:1223"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:1360" version="1" check="at least one" comment="squid is listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:941"/>
      <state state_ref="oval:org.mitre.oval:ste:1222"/>
    </inetlisteningservers_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1430" version="1" check="at least one" comment="ipsec-tools version is less than 0.2.5-0.4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:975"/>
      <state state_ref="oval:org.mitre.oval:ste:1289"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:1429" version="1" check="at least one" comment="racoon is listening on the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:974"/>
      <state state_ref="oval:org.mitre.oval:ste:1288"/>
    </inetlisteningservers_test>
    <file_test id="oval:org.mitre.oval:tst:1529" version="1" check="at least one" comment="/usr/bin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1024"/>
      <state state_ref="oval:org.mitre.oval:ste:1383"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1528" version="1" check="at least one" comment="/usr/bin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1024"/>
      <state state_ref="oval:org.mitre.oval:ste:1382"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1527" version="1" check="at least one" comment="/usr/bin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1024"/>
      <state state_ref="oval:org.mitre.oval:ste:1381"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1526" version="1" check="at least one" comment="/usr/sbin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1023"/>
      <state state_ref="oval:org.mitre.oval:ste:1380"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1525" version="1" check="at least one" comment="/usr/sbin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1023"/>
      <state state_ref="oval:org.mitre.oval:ste:1379"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1524" version="1" check="at least one" comment="/usr/sbin/ethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1023"/>
      <state state_ref="oval:org.mitre.oval:ste:1378"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1523" version="1" check="at least one" comment="/usr/bin/tethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1022"/>
      <state state_ref="oval:org.mitre.oval:ste:1377"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1522" version="1" check="at least one" comment="/usr/bin/tethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1022"/>
      <state state_ref="oval:org.mitre.oval:ste:1376"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1521" version="1" check="at least one" comment="/usr/bin/tethereal is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1022"/>
      <state state_ref="oval:org.mitre.oval:ste:1375"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1359" version="1" check="at least one" comment="ethereal version is less than 0.10.3-0.30E.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:940"/>
      <state state_ref="oval:org.mitre.oval:ste:1221"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1358" version="1" check="at least one" comment="ethereal-gnome version is less than 0.10.3-0.30E.2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:939"/>
      <state state_ref="oval:org.mitre.oval:ste:1220"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1351" version="1" check="at least one" comment="krb5-libs rpm version prior to 1.2.7-24 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:937"/>
      <state state_ref="oval:org.mitre.oval:ste:1213"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1381" version="1" check="at least one" comment="/usr/bin/cvs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:953"/>
      <state state_ref="oval:org.mitre.oval:ste:1243"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1380" version="1" check="at least one" comment="/usr/bin/cvs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:953"/>
      <state state_ref="oval:org.mitre.oval:ste:1242"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1379" version="1" check="at least one" comment="/usr/bin/cvs is executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:953"/>
      <state state_ref="oval:org.mitre.oval:ste:1241"/>
    </file_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1347" version="1" check="at least one" comment="cvs rpm version prior to 1.11.2-24 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:933"/>
      <state state_ref="oval:org.mitre.oval:ste:1209"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1342" version="1" check="at least one" comment="kernel version is less than 2.4.21-15.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:930"/>
      <state state_ref="oval:org.mitre.oval:ste:1204"/>
    </rpminfo_test>
    <file_test id="oval:org.mitre.oval:tst:1341" version="1" check="at least one" comment="/proc/tty/driver/serial is world-readable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:929"/>
      <state state_ref="oval:org.mitre.oval:ste:1203"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1340" version="1" check="at least one" comment="/proc/tty/driver/ is world-executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:928"/>
      <state state_ref="oval:org.mitre.oval:ste:1202"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1339" version="1" check="at least one" comment="/proc/tty/ is world-executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:927"/>
      <state state_ref="oval:org.mitre.oval:ste:1201"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:1338" version="1" check="at least one" comment="/proc/ is world-executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:926"/>
      <state state_ref="oval:org.mitre.oval:ste:1200"/>
    </file_test>
    <uname_test id="oval:org.mitre.oval:tst:3955" version="1" check="at least one" comment="Solaris 10 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2733"/>
      <state state_ref="oval:org.mitre.oval:ste:3839"/>
    </uname_test>
    <isainfo_test id="oval:org.mitre.oval:tst:3884" version="1" check="at least one" comment="system is running in 64-bit mode" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2704"/>
      <state state_ref="oval:org.mitre.oval:ste:3528"/>
    </isainfo_test>
    <uname_test id="oval:org.mitre.oval:tst:3338" version="1" check="at least one" comment="ix86 architecture" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2733"/>
      <state state_ref="oval:org.mitre.oval:ste:3040"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:3195" version="1" check="at least one" comment="Patch 118844-14 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2090"/>
      <state state_ref="oval:org.mitre.oval:ste:3384"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3993" version="1" check="at least one" comment="Patch PHCO_28847 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1883"/>
      <state state_ref="oval:org.mitre.oval:ste:3737"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3649" version="1" check="at least one" comment="Patch PHSS_29963 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2770"/>
      <state state_ref="oval:org.mitre.oval:ste:3919"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3960" version="1" check="at least one" comment="Patch 118844-14 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1890"/>
      <state state_ref="oval:org.mitre.oval:ste:3645"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:4152" version="1" check="at least one" comment="OS-Core.ARRAY-MGMT (B.11.11) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2380"/>
      <state state_ref="oval:org.mitre.oval:ste:3011"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3830" version="1" check="at least one" comment="OS-Core.ADMN-ENG-A-MAN (B.11.11) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2623"/>
      <state state_ref="oval:org.mitre.oval:ste:3226"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:3210" version="1" check="at least one" comment="Patch PHCO_23263 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2700"/>
      <state state_ref="oval:org.mitre.oval:ste:3819"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3779" version="1" check="at least one" comment="Patch PHNE_33159 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2756"/>
      <state state_ref="oval:org.mitre.oval:ste:3712"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:4105" version="1" check="at least one" comment="Patch 112908-12 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2309"/>
      <state state_ref="oval:org.mitre.oval:ste:3777"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:4074" version="1" check="all" comment="pam_krb5 is an auth module with debug enabled" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:2563"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:4013" version="1" check="at least one" comment="Patch 115168-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1845"/>
      <state state_ref="oval:org.mitre.oval:ste:3539"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3957" version="1" check="at least one" comment="Patch 112908-13 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2309"/>
      <state state_ref="oval:org.mitre.oval:ste:3535"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:3394" version="1" check="all" comment="Logging of LOG_DEBUG level messages is enabled" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:1866"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:3258" version="1" check="at least one" comment="Patch 115168-03 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1845"/>
      <state state_ref="oval:org.mitre.oval:ste:3220"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3698" version="1" check="at least one" comment="Patch 119255-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2730"/>
      <state state_ref="oval:org.mitre.oval:ste:3374"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3284" version="1" check="at least one" comment="Patch 119254-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2444"/>
      <state state_ref="oval:org.mitre.oval:ste:3922"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3771" version="1" check="at least one" comment="Patch 119450-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2245"/>
      <state state_ref="oval:org.mitre.oval:ste:3724"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3644" version="1" check="at least one" comment="Patch 119449-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2729"/>
      <state state_ref="oval:org.mitre.oval:ste:3291"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3559" version="1" check="at least one" comment="Patch PHSS_30302 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1862"/>
      <state state_ref="oval:org.mitre.oval:ste:3169"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3243" version="1" check="at least one" comment="Patch PHCO_30006 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2785"/>
      <state state_ref="oval:org.mitre.oval:ste:3779"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:3969" version="1" check="at least one" comment="OS-Core.ARRAY-MGMT (B.11.00) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2749"/>
      <state state_ref="oval:org.mitre.oval:ste:3311"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3707" version="1" check="at least one" comment="OS-Core.ADMN-ENG-A-MAN (B.11.00) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2181"/>
      <state state_ref="oval:org.mitre.oval:ste:3127"/>
    </swlist_test>
    <uname_test id="oval:org.mitre.oval:tst:3540" version="1" check="all" comment="HP Release B.11.10" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3695"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:3536" version="1" check="at least one" comment="Patch PHCO_23262 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2516"/>
      <state state_ref="oval:org.mitre.oval:ste:3260"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:3449" version="1" check="at least one" comment="OS-Core.ARRAY-MGMT (B.11.10) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2481"/>
      <state state_ref="oval:org.mitre.oval:ste:3442"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3377" version="1" check="at least one" comment="OS-Core.ADMN-ENG-A-MAN (B.11.10) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2293"/>
      <state state_ref="oval:org.mitre.oval:ste:3683"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:4067" version="1" check="at least one" comment="Patch 120954-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2778"/>
      <state state_ref="oval:org.mitre.oval:ste:3473"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3609" version="1" check="at least one" comment="Patch PHNE_34077 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2051"/>
      <state state_ref="oval:org.mitre.oval:ste:3005"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:3519" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2424"/>
      <state state_ref="oval:org.mitre.oval:ste:3434"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:4132" version="1" check="at least one" comment="Patch PHNE_33412 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2341"/>
      <state state_ref="oval:org.mitre.oval:ste:3549"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:3193" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2530"/>
      <state state_ref="oval:org.mitre.oval:ste:3743"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3962" version="1" check="at least one" comment="WUFTP-26.INETSVCS-FTP with version less than B.11.00.01.005 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1871"/>
      <state state_ref="oval:org.mitre.oval:ste:3077"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3687" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2115"/>
      <state state_ref="oval:org.mitre.oval:ste:3599"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:3428" version="1" check="at least one" comment="Patch PHNE_33414 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1815"/>
      <state state_ref="oval:org.mitre.oval:ste:3294"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:3985" version="1" check="all" comment="HP Release B.10.10" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3450"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:3807" version="1" check="all" comment="HP Release B.10.20" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3946"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:3674" version="1" check="at least one" comment="Patch PHCO_23261 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2358"/>
      <state state_ref="oval:org.mitre.oval:ste:3110"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:3581" version="1" check="all" comment="HP Release B.10.01" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3134"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:3461" version="1" check="all" comment="HP Release B.10.30" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3213"/>
    </uname_test>
    <swlist_test id="oval:org.mitre.oval:tst:3376" version="1" check="at least one" comment="OS-Core.C2400-UTIL is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1876"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3370" version="1" check="at least one" comment="OS-Core.ADMN-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2208"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3641" version="1" check="at least one" comment="WUFTP-26.INETSVCS-FTP with version less than B.11.11.01.006 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2161"/>
      <state state_ref="oval:org.mitre.oval:ste:3359"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:3974" version="1" check="at least one" comment="Patch PHSS_29964 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2784"/>
      <state state_ref="oval:org.mitre.oval:ste:3612"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:3858" version="1" check="at least one" comment="DCE-Core.DCE-CORE-SHLIB is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2529"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3857" version="1" check="at least one" comment="SW-DIST.SD-AGENT is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2602"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:3831" version="1" check="at least one" comment="Patch PHCO_28848 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1856"/>
      <state state_ref="oval:org.mitre.oval:ste:3793"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3505" version="1" check="at least one" comment="Patch 118822-27 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2218"/>
      <state state_ref="oval:org.mitre.oval:ste:2997"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3302" version="1" check="at least one" comment="Patch 118844-28 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1890"/>
      <state state_ref="oval:org.mitre.oval:ste:3089"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:3415" version="1" check="at least one" comment="TOUR_PRODUCT.T-NET2-KRN with version less than A.03.00 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2556"/>
      <state state_ref="oval:org.mitre.oval:ste:3929"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:3439" version="1" check="at least one" comment="Patch PHNE_32606 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2081"/>
      <state state_ref="oval:org.mitre.oval:ste:3930"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:4066" version="1" check="at least one" comment="Patch 115168-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1845"/>
      <state state_ref="oval:org.mitre.oval:ste:3131"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:4043" version="1" check="at least one" comment="Patch 112238-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1830"/>
      <state state_ref="oval:org.mitre.oval:ste:3692"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:3873" version="1" check="at least one" comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrgdo) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2655"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:3824" version="1" check="at least one" comment="Patch 112908-15 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2309"/>
      <state state_ref="oval:org.mitre.oval:ste:3372"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3544" version="1" check="at least one" comment="Patch 112536-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1847"/>
      <state state_ref="oval:org.mitre.oval:ste:3437"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:3514" version="1" check="at least one" comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2213"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:3509" version="1" check="at least one" comment="Patch 112390-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2709"/>
      <state state_ref="oval:org.mitre.oval:ste:3614"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3498" version="1" check="at least one" comment="Patch 112537-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2196"/>
      <state state_ref="oval:org.mitre.oval:ste:3009"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:3487" version="1" check="all" comment="/etc/krb5/krb5.conf is configured as a kerberos client" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:2143"/>
    </textfilecontent_test>
    <package_test id="oval:org.mitre.oval:tst:3369" version="1" check="at least one" comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrggl) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2138"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:3366" version="1" check="at least one" comment="Patch 112240-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2599"/>
      <state state_ref="oval:org.mitre.oval:ste:3847"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3354" version="1" check="at least one" comment="Patch 112237-11 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2466"/>
      <state state_ref="oval:org.mitre.oval:ste:2964"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:3192" version="1" check="at least one" comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sl) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2617"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:3393" version="1" check="at least one" comment="Patch PHNE_33395 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1973"/>
      <state state_ref="oval:org.mitre.oval:ste:3269"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:3902" version="1" check="at least one" comment="Perl 5.8.0 (revision F or earlier) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2356"/>
      <state state_ref="oval:org.mitre.oval:ste:3557"/>
    </swlist_test>
    <uname_test id="oval:org.mitre.oval:tst:3901" version="1" check="all" comment="HP Release B.11.23" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3324"/>
    </uname_test>
    <swlist_test id="oval:org.mitre.oval:tst:3847" version="1" check="at least one" comment="Perl 5.8.3,revision A is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2426"/>
      <state state_ref="oval:org.mitre.oval:ste:3790"/>
    </swlist_test>
    <uname_test id="oval:org.mitre.oval:tst:3704" version="1" check="all" comment="HP Release B.11.11" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3389"/>
    </uname_test>
    <swlist_test id="oval:org.mitre.oval:tst:3635" version="1" check="at least one" comment="Perl 5.8.2,revision E or earlier is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1863"/>
      <state state_ref="oval:org.mitre.oval:ste:3165"/>
    </swlist_test>
    <uname_test id="oval:org.mitre.oval:tst:3571" version="1" check="all" comment="HP Release B.11.00" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3813"/>
    </uname_test>
    <swlist_test id="oval:org.mitre.oval:tst:3419" version="1" check="at least one" comment="Perl 5.6.0 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2267"/>
      <state state_ref="oval:org.mitre.oval:ste:3647"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:3226" version="1" check="at least one" comment="Perl 5.8.2,revision C or earlier is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2172"/>
      <state state_ref="oval:org.mitre.oval:ste:3104"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:3898" version="1" check="at least one" comment="Patch 112238-12 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1830"/>
      <state state_ref="oval:org.mitre.oval:ste:2974"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:3694" version="1" check="at least one" comment="Pkg SUNWcryr (Supplemental Encryption) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2551"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:3640" version="1" check="at least one" comment="Patch 112390-11 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2709"/>
      <state state_ref="oval:org.mitre.oval:ste:3522"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3624" version="1" check="at least one" comment="Patch 115168-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1845"/>
      <state state_ref="oval:org.mitre.oval:ste:3074"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3567" version="1" check="at least one" comment="Patch 112237-13 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2466"/>
      <state state_ref="oval:org.mitre.oval:ste:3846"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3561" version="1" check="at least one" comment="Patch 120469-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2128"/>
      <state state_ref="oval:org.mitre.oval:ste:3272"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3497" version="1" check="at least one" comment="Patch 112240-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2599"/>
      <state state_ref="oval:org.mitre.oval:ste:2988"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3424" version="1" check="at least one" comment="Patch 112537-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2196"/>
      <state state_ref="oval:org.mitre.oval:ste:2965"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3418" version="1" check="at least one" comment="Patch 120470-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2752"/>
      <state state_ref="oval:org.mitre.oval:ste:3688"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3389" version="1" check="at least one" comment="Patch 112908-20 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2309"/>
      <state state_ref="oval:org.mitre.oval:ste:3041"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3209" version="1" check="at least one" comment="Patch 112536-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1847"/>
      <state state_ref="oval:org.mitre.oval:ste:3585"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:3198" version="1" check="at least one" comment="Pkg SUNWcry (Supplemental Encryption) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2361"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:3551" version="1" check="at least one" comment="Sun Java System Access Manager 7 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2033"/>
      <state state_ref="oval:org.mitre.oval:ste:3088"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:3363" version="1" check="at least one" comment="Patch 120955-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2616"/>
      <state state_ref="oval:org.mitre.oval:ste:3553"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:4070" version="1" check="at least one" comment="Patch 112669-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2288"/>
      <state state_ref="oval:org.mitre.oval:ste:3850"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:4005" version="1" check="at least one" comment="Patch 112668-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1949"/>
      <state state_ref="oval:org.mitre.oval:ste:3228"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3778" version="1" check="at least one" comment="Patch 116341-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2548"/>
      <state state_ref="oval:org.mitre.oval:ste:3562"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3666" version="1" check="at least one" comment="Patch 116340-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2010"/>
      <state state_ref="oval:org.mitre.oval:ste:3405"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3621" version="1" check="at least one" comment="Patch 120720-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2637"/>
      <state state_ref="oval:org.mitre.oval:ste:3667"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3295" version="1" check="at least one" comment="Patch 120719-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2345"/>
      <state state_ref="oval:org.mitre.oval:ste:3869"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:4124" version="1" check="all" comment="800-series HP" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3073"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:3468" version="1" check="at least one" comment="Patch PHNE_33427 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:2678"/>
      <state state_ref="oval:org.mitre.oval:ste:3608"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:3443" version="1" check="all" comment="700-series HP" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3773"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:3294" version="1" check="all" comment="HP Release B.11.04" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3271"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:4130" version="1" check="at least one" comment="Patch 112785-50 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1996"/>
      <state state_ref="oval:org.mitre.oval:ste:3193"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3997" version="1" check="at least one" comment="Patch 119059-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2544"/>
      <state state_ref="oval:org.mitre.oval:ste:3924"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:3963" version="1" check="at least one" comment="File Xsun SUID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2350"/>
      <state state_ref="oval:org.mitre.oval:ste:3519"/>
    </file_test>
    <uname_test id="oval:org.mitre.oval:tst:3912" version="1" check="at least one" comment="ix86 architecture" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3443"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:3680" version="1" check="at least one" comment="Solaris 10 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3597"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:3576" version="1" check="at least one" comment="Solaris 7 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3679"/>
    </uname_test>
    <file_test id="oval:org.mitre.oval:tst:3558" version="1" check="at least one" comment="File Xprt SUID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1927"/>
      <state state_ref="oval:org.mitre.oval:ste:3222"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:3529" version="1" check="at least one" comment="Patch 119060-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2024"/>
      <state state_ref="oval:org.mitre.oval:ste:3142"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:3437" version="1" check="at least one" comment="Solaris 8 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3700"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:3404" version="1" check="at least one" comment="Patch 112786-39 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2362"/>
      <state state_ref="oval:org.mitre.oval:ste:3016"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3400" version="1" check="at least one" comment="Patch 108652-93 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2405"/>
      <state state_ref="oval:org.mitre.oval:ste:3420"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3355" version="1" check="at least one" comment="Patch 108653-82 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:2007"/>
      <state state_ref="oval:org.mitre.oval:ste:3126"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:3237" version="1" check="at least one" comment="sparc architecture" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3478"/>
    </uname_test>
    <file_test id="oval:org.mitre.oval:tst:3178" version="1" check="at least one" comment="File Xsun SGID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2350"/>
      <state state_ref="oval:org.mitre.oval:ste:3943"/>
    </file_test>
    <uname_test id="oval:org.mitre.oval:tst:3172" version="1" check="at least one" comment="Solaris 9 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:2759"/>
      <state state_ref="oval:org.mitre.oval:ste:3891"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:1254" version="1" check="at least one" comment="Patch 108652-94 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:876"/>
      <state state_ref="oval:org.mitre.oval:ste:1124"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1253" version="1" check="at least one" comment="Patch 112785-52 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:211"/>
      <state state_ref="oval:org.mitre.oval:ste:1123"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1252" version="1" check="at least one" comment="Patch 119059-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:875"/>
      <state state_ref="oval:org.mitre.oval:ste:1122"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1251" version="1" check="at least one" comment="Patch 108653-83 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:874"/>
      <state state_ref="oval:org.mitre.oval:ste:1121"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1250" version="1" check="at least one" comment="Patch 112786-41 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:210"/>
      <state state_ref="oval:org.mitre.oval:ste:1120"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1249" version="1" check="at least one" comment="Patch 119060-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:873"/>
      <state state_ref="oval:org.mitre.oval:ste:1119"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:1248" version="1" check="at least one" comment="The Xsun X server is running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:872"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:847" version="1" check="at least one" comment="Patch PHCO_29249 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:640"/>
      <state state_ref="oval:org.mitre.oval:ste:759"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2471" version="1" check="at least one" comment="Patch PHNE_30983 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1403"/>
      <state state_ref="oval:org.mitre.oval:ste:2315"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2470" version="1" check="at least one" comment="Patch PHNE_31732 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1402"/>
      <state state_ref="oval:org.mitre.oval:ste:2314"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1350" version="1" check="at least one" comment="OS-Core.CORE2-KRN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:936"/>
      <state state_ref="oval:org.mitre.oval:ste:1212"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1349" version="1" check="at least one" comment="Patch PHKL_33713 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:935"/>
      <state state_ref="oval:org.mitre.oval:ste:1211"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1348" version="1" check="at least one" comment="Patch PHKL_33714 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:934"/>
      <state state_ref="oval:org.mitre.oval:ste:1210"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1337" version="1" check="at least one" comment="Patch 118908-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:925"/>
      <state state_ref="oval:org.mitre.oval:ste:1199"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:1336" version="1" check="at least one" comment="File Xorg exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:924"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:1335" version="1" check="at least one" comment="Patch 118966-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:581"/>
      <state state_ref="oval:org.mitre.oval:ste:1198"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:1334" version="1" check="at least one" comment="The Xorg X server is running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:923"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:217" version="1" check="at least one" comment="Patch 116973-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:217"/>
      <state state_ref="oval:org.mitre.oval:ste:215"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:216" version="1" check="at least one" comment="Patch 116974-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:216"/>
      <state state_ref="oval:org.mitre.oval:ste:214"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:215" version="1" check="at least one" comment="Patch 113146-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:215"/>
      <state state_ref="oval:org.mitre.oval:ste:213"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:214" version="1" check="at least one" comment="Patch 114145-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:214"/>
      <state state_ref="oval:org.mitre.oval:ste:212"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:213" version="1" check="at least one" comment="Patch 111844-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:213"/>
      <state state_ref="oval:org.mitre.oval:ste:211"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:212" version="1" check="at least one" comment="Patch 111845-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:212"/>
      <state state_ref="oval:org.mitre.oval:ste:210"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:211" version="1" check="at least one" comment="Patch 112785-38 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:211"/>
      <state state_ref="oval:org.mitre.oval:ste:209"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:210" version="1" check="at least one" comment="Patch 112786-27 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:210"/>
      <state state_ref="oval:org.mitre.oval:ste:208"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:209" version="1" check="at least one" comment="Patch 118953-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:209"/>
      <state state_ref="oval:org.mitre.oval:ste:207"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:208" version="1" check="at least one" comment="Patch 118954-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:208"/>
      <state state_ref="oval:org.mitre.oval:ste:206"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:207" version="1" check="at least one" comment="Patch 109931-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:207"/>
      <state state_ref="oval:org.mitre.oval:ste:205"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:206" version="1" check="at least one" comment="Patch 109932-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:206"/>
      <state state_ref="oval:org.mitre.oval:ste:204"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:205" version="1" check="at least one" comment="Patch 114219-11 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:205"/>
      <state state_ref="oval:org.mitre.oval:ste:203"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:204" version="1" check="at least one" comment="Pkg SUNWTiff is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:204"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:203" version="1" check="at least one" comment="Pkg SUNWTiffx is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:203"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:202" version="1" check="at least one" comment="Patch 114220-11 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:202"/>
      <state state_ref="oval:org.mitre.oval:ste:202"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:201" version="1" check="at least one" comment="Patch 119900-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:201"/>
      <state state_ref="oval:org.mitre.oval:ste:201"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:200" version="1" check="at least one" comment="Patch 119901-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:200"/>
      <state state_ref="oval:org.mitre.oval:ste:200"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1275" version="1" check="at least one" comment="Patch PHNE_24395 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:888"/>
      <state state_ref="oval:org.mitre.oval:ste:1144"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1197" version="1" check="at least one" comment="Patch 119985-02 or later installed (SPARC-10)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:848"/>
      <state state_ref="oval:org.mitre.oval:ste:1070"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1196" version="1" check="at least one" comment="Patch 122082-01 or later installed (x86-10)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:847"/>
      <state state_ref="oval:org.mitre.oval:ste:1069"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:1160" version="1" check="at least one" comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sl) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:827"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:1159" version="1" check="at least one" comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrgdo) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:826"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:1158" version="1" check="at least one" comment=" Sun Enterprise Authentication Mechanism (SEAM, SUNWkrggl) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:825"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:1157" version="1" check="at least one" comment="Patch 112536-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:296"/>
      <state state_ref="oval:org.mitre.oval:ste:1036"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1156" version="1" check="at least one" comment="Patch 112908-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:442"/>
      <state state_ref="oval:org.mitre.oval:ste:1035"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1155" version="1" check="at least one" comment="Patch 112237-07 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:447"/>
      <state state_ref="oval:org.mitre.oval:ste:1034"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1154" version="1" check="at least one" comment="Patch 112390-07 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:446"/>
      <state state_ref="oval:org.mitre.oval:ste:1033"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1117" version="1" check="at least one" comment="Patch PHNE_33791 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:808"/>
      <state state_ref="oval:org.mitre.oval:ste:998"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:1077" version="1" check="all" comment="HP Release B.10.24" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:959"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:1076" version="1" check="at least one" comment="Patch PHNE_24394 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:788"/>
      <state state_ref="oval:org.mitre.oval:ste:958"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1062" version="1" check="at least one" comment="VirtualvaultTS A.04.70 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:779"/>
      <state state_ref="oval:org.mitre.oval:ste:948"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:1061" version="1" check="at least one" comment="VirtualvaultWS A.04.70 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:778"/>
      <state state_ref="oval:org.mitre.oval:ste:947"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1060" version="1" check="at least one" comment="Patch PHSS_34121 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:777"/>
      <state state_ref="oval:org.mitre.oval:ste:946"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1059" version="1" check="at least one" comment="VirtualvaultTS A.04.60 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:776"/>
      <state state_ref="oval:org.mitre.oval:ste:945"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1058" version="1" check="at least one" comment="Patch PHSS_34170 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:775"/>
      <state state_ref="oval:org.mitre.oval:ste:944"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1057" version="1" check="at least one" comment="VirtualvaultWS A.04.60 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:774"/>
      <state state_ref="oval:org.mitre.oval:ste:943"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1056" version="1" check="at least one" comment="Patch PHSS_34120 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:773"/>
      <state state_ref="oval:org.mitre.oval:ste:942"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1055" version="1" check="at least one" comment="VirtualvaultTS A.04.50 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:772"/>
      <state state_ref="oval:org.mitre.oval:ste:941"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1054" version="1" check="at least one" comment="Patch PHSS_34171 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:771"/>
      <state state_ref="oval:org.mitre.oval:ste:940"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1053" version="1" check="at least one" comment="VirtualvaultWS A.04.50 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:770"/>
      <state state_ref="oval:org.mitre.oval:ste:939"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1052" version="1" check="at least one" comment="Patch PHSS_34119 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:769"/>
      <state state_ref="oval:org.mitre.oval:ste:938"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1051" version="1" check="at least one" comment="HP_Webproxy.HPWEB-PX-CORE A.02.10 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:768"/>
      <state state_ref="oval:org.mitre.oval:ste:937"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1050" version="1" check="at least one" comment="Patch PHSS_34203 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:767"/>
      <state state_ref="oval:org.mitre.oval:ste:936"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1049" version="1" check="at least one" comment="HP_Webproxy.HPWEB-PX-CORE A.02.00 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:766"/>
      <state state_ref="oval:org.mitre.oval:ste:935"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1048" version="1" check="at least one" comment="Patch PHSS_34204 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:765"/>
      <state state_ref="oval:org.mitre.oval:ste:934"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1030" version="1" check="at least one" comment="Patch PHNE_34306 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:754"/>
      <state state_ref="oval:org.mitre.oval:ste:919"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1018" version="1" check="at least one" comment="Patch PHNE_23949 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:746"/>
      <state state_ref="oval:org.mitre.oval:ste:908"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1014" version="1" check="at least one" comment="Mozilla is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:744"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:1013" version="1" check="at least one" comment="Mozilla v1.7.12 (1.7.12.0.00) or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:743"/>
      <state state_ref="oval:org.mitre.oval:ste:904"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:980" version="1" check="at least one" comment="Patch PHNE_34543 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:726"/>
      <state state_ref="oval:org.mitre.oval:ste:879"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:979" version="1" check="at least one" comment="WUFTP-26.INETSVCS-FTP with version less than B.11.11.01.006 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:725"/>
      <state state_ref="oval:org.mitre.oval:ste:878"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:1032" version="1" check="at least one" comment="Secure_Shell.SECURE_SHELL with version less than A.04.20.005 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:755"/>
      <state state_ref="oval:org.mitre.oval:ste:921"/>
    </swlist_test>
    <package_test id="oval:org.mitre.oval:tst:963" version="1" check="all" comment="the SUNWlzas package (for slsadmin) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:713"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:962" version="1" check="at least one" comment="Patch 121332-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:712"/>
      <state state_ref="oval:org.mitre.oval:ste:863"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:960" version="1" check="at least one" comment="Patch PHCO_33219 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:710"/>
      <state state_ref="oval:org.mitre.oval:ste:862"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:946" version="1" check="at least one" comment="OS-Core.CORE-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:707"/>
      <state state_ref="oval:org.mitre.oval:ste:848"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:945" version="1" check="at least one" comment="OS-Core.UX-CORE is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:706"/>
      <state state_ref="oval:org.mitre.oval:ste:847"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:944" version="1" check="at least one" comment="Patch PHCO_33989 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:705"/>
      <state state_ref="oval:org.mitre.oval:ste:846"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:934" version="1" check="at least one" comment="Patch PHNE_23950 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:698"/>
      <state state_ref="oval:org.mitre.oval:ste:838"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1119" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:810"/>
      <state state_ref="oval:org.mitre.oval:ste:1000"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:1118" version="1" check="at least one" comment="InternetSrvcs.INET-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:809"/>
      <state state_ref="oval:org.mitre.oval:ste:999"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:933" version="1" check="at least one" comment="Patch 111313-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:673"/>
      <state state_ref="oval:org.mitre.oval:ste:837"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:932" version="1" check="at least one" comment="Patch 111314-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:697"/>
      <state state_ref="oval:org.mitre.oval:ste:836"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:931" version="1" check="at least one" comment="Patch 116807-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:672"/>
      <state state_ref="oval:org.mitre.oval:ste:835"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:930" version="1" check="at least one" comment="Patch 116808-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:696"/>
      <state state_ref="oval:org.mitre.oval:ste:834"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:929" version="1" check="at least one" comment="Patch 121308-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:695"/>
      <state state_ref="oval:org.mitre.oval:ste:833"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:928" version="1" check="at least one" comment="Patch 121309-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:694"/>
      <state state_ref="oval:org.mitre.oval:ste:832"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:924" version="1" check="at least one" comment="Patch PHCO_30402 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:693"/>
      <state state_ref="oval:org.mitre.oval:ste:828"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:920" version="1" check="at least one" comment="CIFS-Server.CIFS-RUN with version less than A.01.11.04 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:690"/>
      <state state_ref="oval:org.mitre.oval:ste:824"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:919" version="1" check="at least one" comment="CIFS-Server.CIFS-UTIL with version less than A.01.11.04 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:689"/>
      <state state_ref="oval:org.mitre.oval:ste:823"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:918" version="1" check="at least one" comment="CIFS-Server.CIFS-ADMIN with version less than A.01.11.04 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:688"/>
      <state state_ref="oval:org.mitre.oval:ste:822"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:917" version="1" check="at least one" comment="CIFS-Server.CIFS-LIB with version less than A.01.11.04 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:687"/>
      <state state_ref="oval:org.mitre.oval:ste:821"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:915" version="1" check="at least one" comment="Patch PHSS_34102 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:686"/>
      <state state_ref="oval:org.mitre.oval:ste:819"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:910" version="1" check="at least one" comment="Patch 109023-05 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:683"/>
      <state state_ref="oval:org.mitre.oval:ste:816"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:909" version="1" check="at least one" comment="Patch 120240-01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:682"/>
      <state state_ref="oval:org.mitre.oval:ste:815"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:908" version="1" check="at least one" comment="Patch 109024-05 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:681"/>
      <state state_ref="oval:org.mitre.oval:ste:814"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:907" version="1" check="at least one" comment="Patch 120239-01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:680"/>
      <state state_ref="oval:org.mitre.oval:ste:813"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:906" version="1" check="all" comment="HP Release B.10.20" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:812"/>
    </uname_test>
    <swlist_test id="oval:org.mitre.oval:tst:905" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:678"/>
      <state state_ref="oval:org.mitre.oval:ste:811"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:904" version="1" check="at least one" comment="InternetSrvcs.INET-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:677"/>
      <state state_ref="oval:org.mitre.oval:ste:810"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:903" version="1" check="at least one" comment="Patch PHNE_23948 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:676"/>
      <state state_ref="oval:org.mitre.oval:ste:809"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:966" version="1" check="at least one" comment="IPSec.IPSEC2-KRN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:716"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:965" version="1" check="at least one" comment="IPSec.IPSEC2-KRN with version less than A.2.00.01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:715"/>
      <state state_ref="oval:org.mitre.oval:ste:865"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:964" version="1" check="at least one" comment="TOUR_PRODUCT.T-NET2-KRN with version less than A.03.00 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:714"/>
      <state state_ref="oval:org.mitre.oval:ste:864"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:878" version="1" check="at least one" comment="Patch 111570-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:657"/>
      <state state_ref="oval:org.mitre.oval:ste:789"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:877" version="1" check="at least one" comment="Patch 111571-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:656"/>
      <state state_ref="oval:org.mitre.oval:ste:788"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:876" version="1" check="at least one" comment="Patch 113322-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:655"/>
      <state state_ref="oval:org.mitre.oval:ste:787"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:875" version="1" check="at least one" comment="Patch 115880-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:654"/>
      <state state_ref="oval:org.mitre.oval:ste:786"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:869" version="1" check="at least one" comment="Secure_Shell.SECURE_SHELL with version less than A.04.20.004 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:653"/>
      <state state_ref="oval:org.mitre.oval:ste:780"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:1033" version="1" check="at least one" comment="Secure_Shell.SECURE_SHELL is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:756"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:852" version="1" check="at least one" comment="OS-Core.CORE-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:645"/>
      <state state_ref="oval:org.mitre.oval:ste:764"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:851" version="1" check="at least one" comment="OS-Core.UX-CORE is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:644"/>
      <state state_ref="oval:org.mitre.oval:ste:763"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:850" version="1" check="at least one" comment="Patch PHCO_33967 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:643"/>
      <state state_ref="oval:org.mitre.oval:ste:762"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:849" version="1" check="at least one" comment="InternetSrvcs.INET-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:642"/>
      <state state_ref="oval:org.mitre.oval:ste:761"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:848" version="1" check="at least one" comment="Patch PHNE_33792 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:641"/>
      <state state_ref="oval:org.mitre.oval:ste:760"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:2472" version="1" check="at least one" comment="InternetSrvcs.INETSVCS2-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1404"/>
      <state state_ref="oval:org.mitre.oval:ste:2316"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:845" version="1" check="at least one" comment="Patch 120329-02 or later installed (SPARC-10)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:638"/>
      <state state_ref="oval:org.mitre.oval:ste:757"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:844" version="1" check="at least one" comment="Patch 120330-02 or later installed (SPARC-10)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:637"/>
      <state state_ref="oval:org.mitre.oval:ste:756"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:843" version="1" check="all" comment="Target is configured to reference pam_krb5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:636"/>
    </textfilecontent_test>
    <swlist_test id="oval:org.mitre.oval:tst:841" version="1" check="at least one" comment="SysMgmtServer.MX-PORTAL (C.04.00.00.00) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:635"/>
      <state state_ref="oval:org.mitre.oval:ste:754"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:840" version="1" check="at least one" comment="SysMgmtServer.MX-PORTAL (C.04.01.00.00) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:634"/>
      <state state_ref="oval:org.mitre.oval:ste:753"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:837" version="1" check="at least one" comment="Patch PHCO_32280 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:632"/>
      <state state_ref="oval:org.mitre.oval:ste:750"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1279" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:891"/>
      <state state_ref="oval:org.mitre.oval:ste:1148"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:1278" version="1" check="at least one" comment="InternetSrvcs.INET-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:890"/>
      <state state_ref="oval:org.mitre.oval:ste:1147"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:1277" version="1" check="at least one" comment="VirtualVaultOS.VVOS-AUX-IA is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:889"/>
      <state state_ref="oval:org.mitre.oval:ste:1146"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:823" version="1" check="at least one" comment="Patch PHNE_33159 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:623"/>
      <state state_ref="oval:org.mitre.oval:ste:738"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:822" version="1" check="at least one" comment="Patch 118822-24 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:609"/>
      <state state_ref="oval:org.mitre.oval:ste:737"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:808" version="1" check="at least one" comment="Patch 117350-33 or later installed (SPARC-8)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:611"/>
      <state state_ref="oval:org.mitre.oval:ste:726"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:807" version="1" check="at least one" comment="Patch 118558-22 or later installed (SPARC-9)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:610"/>
      <state state_ref="oval:org.mitre.oval:ste:725"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:806" version="1" check="at least one" comment="Patch 118822-29 or later installed (SPARC-10)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:609"/>
      <state state_ref="oval:org.mitre.oval:ste:724"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:805" version="1" check="at least one" comment="Patch 117351-33 or later installed (x86-8)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:608"/>
      <state state_ref="oval:org.mitre.oval:ste:723"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:804" version="1" check="at least one" comment="Patch 118559-22 or later installed (x86-9)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:607"/>
      <state state_ref="oval:org.mitre.oval:ste:722"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:803" version="1" check="at least one" comment="Patch 118844-29 or later installed (x86-10)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:606"/>
      <state state_ref="oval:org.mitre.oval:ste:721"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:801" version="1" check="at least one" comment="Patch 109764-06 or later installed (SPARC-8)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:605"/>
      <state state_ref="oval:org.mitre.oval:ste:719"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:800" version="1" check="at least one" comment="Patch 116047-03 or later installed (SPARC-9)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:604"/>
      <state state_ref="oval:org.mitre.oval:ste:718"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:799" version="1" check="at least one" comment="Patch 119596-03 or later installed (SPARC-10)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:603"/>
      <state state_ref="oval:org.mitre.oval:ste:717"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:798" version="1" check="at least one" comment="Patch 109765-06 or later installed (x86-8)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:602"/>
      <state state_ref="oval:org.mitre.oval:ste:716"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:797" version="1" check="at least one" comment="Patch 121995-01 or later installed (x86-9)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:601"/>
      <state state_ref="oval:org.mitre.oval:ste:715"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:796" version="1" check="at least one" comment="Patch 118813-03 or later installed (x86-10)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:600"/>
      <state state_ref="oval:org.mitre.oval:ste:714"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:795" version="1" check="at least one" comment="InternetSrvcs.INETSVCS2-RUN (B.11.22) is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:599"/>
      <state state_ref="oval:org.mitre.oval:ste:713"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:794" version="1" check="at least one" comment="Patch PHNE_29462 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:598"/>
      <state state_ref="oval:org.mitre.oval:ste:712"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:1015" version="1" check="all" comment="HP Release B.11.22" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:905"/>
    </uname_test>
    <swlist_test id="oval:org.mitre.oval:tst:1124" version="1" check="at least one" comment="WUFTP-26.INETSVCS-FTP with version less than B.11.00.01.004 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:811"/>
      <state state_ref="oval:org.mitre.oval:ste:1005"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:961" version="1" check="at least one" comment="OS-Core.UX-CORE is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:711"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:788" version="1" check="at least one" comment="Patch PHCO_33214 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:595"/>
      <state state_ref="oval:org.mitre.oval:ste:707"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:787" version="1" check="at least one" comment="Patch PHCO_33215 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:594"/>
      <state state_ref="oval:org.mitre.oval:ste:706"/>
    </patch_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:774" version="1" check="all" comment="sendmail before 8.12.x is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:587"/>
      <state state_ref="oval:org.mitre.oval:ste:694"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:773" version="1" check="all" comment="sendmail 8.12.x before 8.12.11 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:587"/>
      <state state_ref="oval:org.mitre.oval:ste:693"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:772" version="1" check="all" comment="sendmail 8.13.x before 8.13.6 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:587"/>
      <state state_ref="oval:org.mitre.oval:ste:692"/>
    </rpminfo_test>
    <swlist_test id="oval:org.mitre.oval:tst:771" version="1" check="at least one" comment="OS-Core.UX2-CORE is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:586"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:770" version="1" check="at least one" comment="Patch PHCO_32149 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:585"/>
      <state state_ref="oval:org.mitre.oval:ste:691"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:769" version="1" check="at least one" comment="Patch PHCO_32926 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:584"/>
      <state state_ref="oval:org.mitre.oval:ste:690"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:765" version="1" check="at least one" comment="Patch 118966-14 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:581"/>
      <state state_ref="oval:org.mitre.oval:ste:688"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:764" version="1" check="at least one" comment="Patch 118966-17 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:581"/>
      <state state_ref="oval:org.mitre.oval:ste:687"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:1040" version="1" check="at least one" comment="VirusVault is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:759"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1039" version="1" check="at least one" comment="Patch PHSS_34123 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:758"/>
      <state state_ref="oval:org.mitre.oval:ste:927"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:890" version="1" check="at least one" comment="Webproxy is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:666"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:889" version="1" check="at least one" comment="Patch PHSS_34163 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:665"/>
      <state state_ref="oval:org.mitre.oval:ste:799"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:1276" version="1" check="all" comment="HP Release B.11.04" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:1145"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:737" version="1" check="at least one" comment="Patch PHCO_34545 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:569"/>
      <state state_ref="oval:org.mitre.oval:ste:663"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:981" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:727"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:736" version="1" check="at least one" comment="Patch PHNE_34544 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:568"/>
      <state state_ref="oval:org.mitre.oval:ste:662"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:735" version="1" check="at least one" comment="WUFTP-26.INETSVCS-FTP with version less than B.11.11.01.008 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:567"/>
      <state state_ref="oval:org.mitre.oval:ste:661"/>
    </swlist_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:818" version="1" check="all" comment="Gnome 2.0.0 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:621"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:817" version="1" check="at least one" comment="Patch 114644-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:620"/>
      <state state_ref="oval:org.mitre.oval:ste:733"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:816" version="1" check="at least one" comment="Patch 114645-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:619"/>
      <state state_ref="oval:org.mitre.oval:ste:732"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:815" version="1" check="at least one" comment="Patch 114686-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:618"/>
      <state state_ref="oval:org.mitre.oval:ste:731"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:814" version="1" check="all" comment="Gnome 2.0.2 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:617"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:813" version="1" check="at least one" comment="Patch 115738-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:616"/>
      <state state_ref="oval:org.mitre.oval:ste:730"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:812" version="1" check="at least one" comment="Patch 114687-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:615"/>
      <state state_ref="oval:org.mitre.oval:ste:729"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:811" version="1" check="at least one" comment="Patch 115739-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:614"/>
      <state state_ref="oval:org.mitre.oval:ste:728"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:810" version="1" check="all" comment="JDS release 2 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:613"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:809" version="1" check="at least one" comment="Patch 121092-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:612"/>
      <state state_ref="oval:org.mitre.oval:ste:727"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:700" version="1" check="at least one" comment="Patch 108993-14 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:275"/>
      <state state_ref="oval:org.mitre.oval:ste:627"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:699" version="1" check="at least one" comment="Patch 108993-51 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:275"/>
      <state state_ref="oval:org.mitre.oval:ste:626"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:698" version="1" check="at least one" comment="Patch 115677-02 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:552"/>
      <state state_ref="oval:org.mitre.oval:ste:625"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:697" version="1" check="at least one" comment="Patch 121321-01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:551"/>
      <state state_ref="oval:org.mitre.oval:ste:624"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:696" version="1" check="at least one" comment="Patch 108994-14 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:550"/>
      <state state_ref="oval:org.mitre.oval:ste:623"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:695" version="1" check="at least one" comment="Patch 108994-51 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:550"/>
      <state state_ref="oval:org.mitre.oval:ste:622"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:694" version="1" check="at least one" comment="Patch 115678-02 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:549"/>
      <state state_ref="oval:org.mitre.oval:ste:621"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:693" version="1" check="at least one" comment="Patch 121322-01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:548"/>
      <state state_ref="oval:org.mitre.oval:ste:620"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:647" version="1" check="at least one" comment="Patch 112908-16 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:442"/>
      <state state_ref="oval:org.mitre.oval:ste:582"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:646" version="1" check="at least one" comment="Patch 112536-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:296"/>
      <state state_ref="oval:org.mitre.oval:ste:581"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:645" version="1" check="at least one" comment="Patch 112237-11 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:447"/>
      <state state_ref="oval:org.mitre.oval:ste:580"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:644" version="1" check="at least one" comment="Patch 112390-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:446"/>
      <state state_ref="oval:org.mitre.oval:ste:579"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:643" version="1" check="all" comment="/etc/krb5/krb5.conf is configured with explicit or rules-based mapping" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:520"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:635" version="1" check="all" comment="Patch 112300-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:515"/>
      <state state_ref="oval:org.mitre.oval:ste:573"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:634" version="1" check="all" comment="Patch 111085-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:514"/>
      <state state_ref="oval:org.mitre.oval:ste:572"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:527" version="1" check="all" comment="Kerberos v5 - Root (SUNWkrbr) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:449"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:526" version="1" check="all" comment="Kerberos v5 - Usr (SUNWkrbu/SUNWkrbux) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>SUNWkrbu - 32bit, SUNWkrbux - 64bit</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:448"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:525" version="1" check="all" comment="Patch 112237-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:447"/>
      <state state_ref="oval:org.mitre.oval:ste:479"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:524" version="1" check="all" comment="Patch 112390-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:446"/>
      <state state_ref="oval:org.mitre.oval:ste:478"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:523" version="1" check="all" comment="Patch 112925-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:445"/>
      <state state_ref="oval:org.mitre.oval:ste:477"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:522" version="1" check="all" comment="Patch 112923-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:444"/>
      <state state_ref="oval:org.mitre.oval:ste:476"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:521" version="1" check="all" comment="Patch 112921-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:443"/>
      <state state_ref="oval:org.mitre.oval:ste:475"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:520" version="1" check="all" comment="Patch 112908-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:442"/>
      <state state_ref="oval:org.mitre.oval:ste:474"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:358" version="1" check="all" comment="Patch 108574-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:325"/>
      <state state_ref="oval:org.mitre.oval:ste:341"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:357" version="1" check="all" comment="Patch 108162-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:324"/>
      <state state_ref="oval:org.mitre.oval:ste:340"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:356" version="1" check="all" comment="Patch 108416-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:323"/>
      <state state_ref="oval:org.mitre.oval:ste:339"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:355" version="1" check="all" comment="Patch 110943-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:322"/>
      <state state_ref="oval:org.mitre.oval:ste:338"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:354" version="1" check="all" comment="Patch 110898-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:321"/>
      <state state_ref="oval:org.mitre.oval:ste:337"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:353" version="1" check="all" comment="Patch 109324-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:320"/>
      <state state_ref="oval:org.mitre.oval:ste:336"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3025" version="1" check="at least one" comment="Patch 108541-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1732"/>
      <state state_ref="oval:org.mitre.oval:ste:2833"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:325" version="1" check="all" comment="Patch 112536-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:296"/>
      <state state_ref="oval:org.mitre.oval:ste:316"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:324" version="1" check="all" comment="Patch 110057-07 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:295"/>
      <state state_ref="oval:org.mitre.oval:ste:315"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:323" version="1" check="all" comment="Patch 110060-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:294"/>
      <state state_ref="oval:org.mitre.oval:ste:314"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:322" version="1" check="all" comment="Patch 116462-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:293"/>
      <state state_ref="oval:org.mitre.oval:ste:313"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:1161" version="1" check="at least one" comment="Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:828"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:310" version="1" check="all" comment="Patch 108451-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:286"/>
      <state state_ref="oval:org.mitre.oval:ste:303"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:309" version="1" check="all" comment="Patch 113319-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:285"/>
      <state state_ref="oval:org.mitre.oval:ste:302"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:308" version="1" check="all" comment="Patch 112233-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:284"/>
      <state state_ref="oval:org.mitre.oval:ste:301"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3026" version="1" check="at least one" comment="Patch 106942-22 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:484"/>
      <state state_ref="oval:org.mitre.oval:ste:2834"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:2510" version="1" check="at least one" comment="X11.X11-RUN-CL is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1431"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:2509" version="1" check="at least one" comment="Patch PHSS_32109 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1430"/>
      <state state_ref="oval:org.mitre.oval:ste:2350"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2508" version="1" check="at least one" comment="Patch PHSS_30791 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1429"/>
      <state state_ref="oval:org.mitre.oval:ste:2349"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2507" version="1" check="at least one" comment="Patch PHSS_33589 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1428"/>
      <state state_ref="oval:org.mitre.oval:ste:2348"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2506" version="1" check="at least one" comment="Patch PHSS_31833 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1427"/>
      <state state_ref="oval:org.mitre.oval:ste:2347"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2505" version="1" check="at least one" comment="Patch PHSS_32366 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1426"/>
      <state state_ref="oval:org.mitre.oval:ste:2346"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:2481" version="1" check="at least one" comment="CIFS-Server.CIFS-RUN with version equal A.02.01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1412"/>
      <state state_ref="oval:org.mitre.oval:ste:2325"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:2480" version="1" check="at least one" comment="CIFS-Server.CIFS-UTIL with version equal A.02.01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1411"/>
      <state state_ref="oval:org.mitre.oval:ste:2324"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:2479" version="1" check="at least one" comment="CIFS-Server.CIFS-ADMIN with version equal A.02.01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1410"/>
      <state state_ref="oval:org.mitre.oval:ste:2323"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:2478" version="1" check="at least one" comment="CIFS-Server.CIFS-LIB with version equal A.02.01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1409"/>
      <state state_ref="oval:org.mitre.oval:ste:2322"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:2413" version="1" check="at least one" comment="Patch 112234-11 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1376"/>
      <state state_ref="oval:org.mitre.oval:ste:2261"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2412" version="1" check="at least one" comment="Patch 112234-12 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1376"/>
      <state state_ref="oval:org.mitre.oval:ste:2260"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2411" version="1" check="at least one" comment="Patch 117172-16 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1375"/>
      <state state_ref="oval:org.mitre.oval:ste:2259"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2410" version="1" check="at least one" comment="Patch 118559-19 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:607"/>
      <state state_ref="oval:org.mitre.oval:ste:2258"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2409" version="1" check="at least one" comment="Patch 118844-24 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:606"/>
      <state state_ref="oval:org.mitre.oval:ste:2257"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:2376" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1359"/>
      <state state_ref="oval:org.mitre.oval:ste:2226"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:2375" version="1" check="at least one" comment="InternetSrvcs.INET-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1358"/>
      <state state_ref="oval:org.mitre.oval:ste:2225"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:2374" version="1" check="at least one" comment="Patch PHNE_33790 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1357"/>
      <state state_ref="oval:org.mitre.oval:ste:2224"/>
    </patch_test>
    <swlist_test id="oval:org.mitre.oval:tst:2373" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1356"/>
      <state state_ref="oval:org.mitre.oval:ste:2223"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:2372" version="1" check="at least one" comment="InternetSrvcs.INET-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1355"/>
      <state state_ref="oval:org.mitre.oval:ste:2222"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:2371" version="1" check="at least one" comment="InternetSrvcs.INETSVCS-RUN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1354"/>
      <state state_ref="oval:org.mitre.oval:ste:2221"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:2370" version="1" check="at least one" comment="InternetSrvcs.INET-ENG-A-MAN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1353"/>
      <state state_ref="oval:org.mitre.oval:ste:2220"/>
    </swlist_test>
    <uname_test id="oval:org.mitre.oval:tst:2369" version="1" check="all" comment="HP Release B.10.01" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2219"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:2368" version="1" check="all" comment="HP Release B.10.10" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2218"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:2367" version="1" check="at least one" comment="Patch PHNE_23947 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1352"/>
      <state state_ref="oval:org.mitre.oval:ste:2217"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2344" version="1" check="at least one" comment="Patch PHCO_29269 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1344"/>
      <state state_ref="oval:org.mitre.oval:ste:2195"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2343" version="1" check="at least one" comment="Patch PHCO_30275 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1343"/>
      <state state_ref="oval:org.mitre.oval:ste:2194"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2342" version="1" check="at least one" comment="Patch PHCO_32181 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1342"/>
      <state state_ref="oval:org.mitre.oval:ste:2193"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2341" version="1" check="at least one" comment="Patch PHSS_34169 or subsequent is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1341"/>
      <state state_ref="oval:org.mitre.oval:ste:2192"/>
    </patch_test>
    <uname_test id="oval:org.mitre.oval:tst:2514" version="1" check="all" comment="HP Release B.11.11" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2354"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:2512" version="1" check="all" comment="HP Release B.11.00" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2352"/>
    </uname_test>
    <swlist_test id="oval:org.mitre.oval:tst:2388" version="1" check="at least one" comment="hpuxwsAPACHE is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1365"/>
    </swlist_test>
    <swlist_test id="oval:org.mitre.oval:tst:2387" version="1" check="at least one" comment="hpuxwsAPACHE has a version greater than or equal (A|B).2.0.55.0" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:1364"/>
      <state state_ref="oval:org.mitre.oval:ste:2236"/>
    </swlist_test>
    <uname_test id="oval:org.mitre.oval:tst:2465" version="1" check="at least one" comment="sparc architecture" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2309"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:2463" version="1" check="at least one" comment="ix86 architecture" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2307"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:2459" version="1" check="at least one" comment="Solaris 10 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2303"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:1520" version="1" check="at least one" comment="Patch 109324-09 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:320"/>
      <state state_ref="oval:org.mitre.oval:ste:1374"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1519" version="1" check="at least one" comment="Patch 118535-03 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1021"/>
      <state state_ref="oval:org.mitre.oval:ste:1373"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1518" version="1" check="at least one" comment="Patch 121004-01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1020"/>
      <state state_ref="oval:org.mitre.oval:ste:1372"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1517" version="1" check="at least one" comment="Patch 109325-09 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1019"/>
      <state state_ref="oval:org.mitre.oval:ste:1371"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1516" version="1" check="at least one" comment="Patch 118536-03 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1018"/>
      <state state_ref="oval:org.mitre.oval:ste:1370"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1515" version="1" check="at least one" comment="Patch 121005-01 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1017"/>
      <state state_ref="oval:org.mitre.oval:ste:1369"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:3140" version="1" check="at least one" comment="File rpc.cmsd exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1781"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3139" version="1" check="at least one" comment="File dmispd exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1786"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:3138" version="1" check="at least one" comment="Patch 108827-30 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1785"/>
      <state state_ref="oval:org.mitre.oval:ste:2937"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3137" version="1" check="at least one" comment="Patch 108901-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1784"/>
      <state state_ref="oval:org.mitre.oval:ste:2936"/>
    </patch_test>
    <inetd_test id="oval:org.mitre.oval:tst:3136" version="1" check="at least one" comment="inetd.conf contains rpc.cmsd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1783"/>
      <state state_ref="oval:org.mitre.oval:ste:2935"/>
    </inetd_test>
    <file_test id="oval:org.mitre.oval:tst:3134" version="1" check="at least one" comment="File rpc.cmsd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1781"/>
      <state state_ref="oval:org.mitre.oval:ste:2933"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3133" version="1" check="at least one" comment="File rpc.cmsd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1781"/>
      <state state_ref="oval:org.mitre.oval:ste:2932"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3132" version="1" check="at least one" comment="File rpc.cmsd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1781"/>
      <state state_ref="oval:org.mitre.oval:ste:2931"/>
    </file_test>
    <process_test id="oval:org.mitre.oval:tst:3131" version="1" check="at least one" comment="dmispd running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1780"/>
    </process_test>
    <uname_test id="oval:org.mitre.oval:tst:2515" version="1" check="all" comment="700-series HP" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2355"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:2513" version="1" check="all" comment="800-series HP" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2353"/>
    </uname_test>
    <uname_test id="oval:org.mitre.oval:tst:2511" version="1" check="all" comment="HP Release B.11.23" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2351"/>
    </uname_test>
    <swlist_test id="oval:org.mitre.oval:tst:1442" version="1" check="at least one" comment="Networking.NET2-KRN is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:984"/>
    </swlist_test>
    <patch_test id="oval:org.mitre.oval:tst:1441" version="1" check="at least one" comment="Patch PHNE_32606 or later is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <object object_ref="oval:org.mitre.oval:obj:983"/>
      <state state_ref="oval:org.mitre.oval:ste:1300"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3129" version="1" check="at least one" comment="Patch 108652-38 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:876"/>
      <state state_ref="oval:org.mitre.oval:ste:2930"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2943" version="1" check="at least one" comment="Patch 111590-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1684"/>
      <state state_ref="oval:org.mitre.oval:ste:2758"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:1243" version="1" check="at least one" comment="Solstice Enterprise Agents SNMP (SUNWsasnm) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:869"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:1242" version="1" check="at least one" comment="Patch 107709-18 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:868"/>
      <state state_ref="oval:org.mitre.oval:ste:1114"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1241" version="1" check="at least one" comment="Patch 108869-15 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:867"/>
      <state state_ref="oval:org.mitre.oval:ste:1113"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:1140" version="1" check="at least one" comment="Networking UUCP Utilities - Usr (SUNWbnuu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:818"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:1139" version="1" check="at least one" comment="Patch 106952-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:817"/>
      <state state_ref="oval:org.mitre.oval:ste:1020"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1138" version="1" check="at least one" comment="Patch 111570-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:657"/>
      <state state_ref="oval:org.mitre.oval:ste:1019"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1137" version="1" check="at least one" comment="Patch 113322-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:655"/>
      <state state_ref="oval:org.mitre.oval:ste:1018"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:3126" version="1" check="at least one" comment="File snmpdx exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1778"/>
    </file_test>
    <process_test id="oval:org.mitre.oval:tst:3124" version="1" check="at least one" comment="snmpdx running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1777"/>
    </process_test>
    <file_test id="oval:org.mitre.oval:tst:3130" version="1" check="at least one" comment="File xlock exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1779"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3128" version="1" check="at least one" comment="File xlock SUID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1779"/>
      <state state_ref="oval:org.mitre.oval:ste:2929"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3127" version="1" check="at least one" comment="File xlock SUID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1779"/>
      <state state_ref="oval:org.mitre.oval:ste:2928"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:2912" version="1" check="at least one" comment="Patch 108376-30 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1460"/>
      <state state_ref="oval:org.mitre.oval:ste:2728"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3108" version="1" check="at least one" comment="Patch 108652-52 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:876"/>
      <state state_ref="oval:org.mitre.oval:ste:2912"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:914" version="1" check="all" comment="Samba - Usr (SUNWsmbau) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:685"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:913" version="1" check="all" comment="Patch 114684-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:506"/>
      <state state_ref="oval:org.mitre.oval:ste:818"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:900" version="1" check="at least one" comment="Solaris Management Console Web Components (SUNWwbmc) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:674"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:899" version="1" check="at least one" comment="Patch 111313-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:673"/>
      <state state_ref="oval:org.mitre.oval:ste:807"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:898" version="1" check="at least one" comment="Patch 116807-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:672"/>
      <state state_ref="oval:org.mitre.oval:ste:806"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:897" version="1" check="at least one" comment="smcboot running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oval-def:notes>
        <oval-def:note>Solaris Management Console web interface</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:671"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:2871" version="1" check="at least one" comment="Patch 109862-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1647"/>
      <state state_ref="oval:org.mitre.oval:ste:2689"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:2873" version="1" check="at least one" comment="File fs.auto exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1648"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2872" version="1" check="at least one" comment="File xfs exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1645"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2869" version="1" check="at least one" comment="File xfs executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1645"/>
      <state state_ref="oval:org.mitre.oval:ste:2687"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2868" version="1" check="at least one" comment="File xfs executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1645"/>
      <state state_ref="oval:org.mitre.oval:ste:2686"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2867" version="1" check="at least one" comment="File xfs executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1645"/>
      <state state_ref="oval:org.mitre.oval:ste:2685"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:2864" version="1" check="at least one" comment="Patch 108117-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1642"/>
      <state state_ref="oval:org.mitre.oval:ste:2682"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:880" version="1" check="at least one" comment="Patch 110943-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:322"/>
      <state state_ref="oval:org.mitre.oval:ste:791"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:790" version="1" check="all" comment="GNU Zip (gzip, SUNWgzip) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:597"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:789" version="1" check="all" comment="Patch 112668-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:596"/>
      <state state_ref="oval:org.mitre.oval:ste:708"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:778" version="1" check="at least one" comment="Patch 108528-27 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:290"/>
      <state state_ref="oval:org.mitre.oval:ste:698"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:762" version="1" check="at least one" comment="Sun Enterprise Storage Manager installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:580"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:761" version="1" check="at least one" comment="Patch 117367-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:579"/>
      <state state_ref="oval:org.mitre.oval:ste:685"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:752" version="1" check="at least one" comment="Patch 107115-14 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:300"/>
      <state state_ref="oval:org.mitre.oval:ste:678"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:751" version="1" check="at least one" comment="Patch 109320-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:315"/>
      <state state_ref="oval:org.mitre.oval:ste:677"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:750" version="1" check="at least one" comment="Patch 113329-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:314"/>
      <state state_ref="oval:org.mitre.oval:ste:676"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3104" version="1" check="at least one" comment="Patch 110286-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1620"/>
      <state state_ref="oval:org.mitre.oval:ste:2909"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2850" version="1" check="at least one" comment="Patch 107893-20 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:301"/>
      <state state_ref="oval:org.mitre.oval:ste:2668"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2848" version="1" check="at least one" comment="Patch 107654-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1632"/>
      <state state_ref="oval:org.mitre.oval:ste:2666"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:690" version="1" check="all" comment="NIS/NIS+ Utilities installed (SUNWnisu)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:547"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:689" version="1" check="all" comment="Patch 108750-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:486"/>
      <state state_ref="oval:org.mitre.oval:ste:617"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:688" version="1" check="all" comment="Patch 110322-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:546"/>
      <state state_ref="oval:org.mitre.oval:ste:616"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:687" version="1" check="all" comment="ypbind running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:545"/>
    </process_test>
    <package_test id="oval:org.mitre.oval:tst:680" version="1" check="at least one" comment="CDE Daemons (SUNWdtdmn) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:543"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:679" version="1" check="at least one" comment="Patch 108221-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:542"/>
      <state state_ref="oval:org.mitre.oval:ste:609"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:674" version="1" check="at least one" comment="Patch 107702-12 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:538"/>
      <state state_ref="oval:org.mitre.oval:ste:605"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:673" version="1" check="at least one" comment="Patch 109354-19 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:537"/>
      <state state_ref="oval:org.mitre.oval:ste:604"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:672" version="1" check="at least one" comment="Patch 114497-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:536"/>
      <state state_ref="oval:org.mitre.oval:ste:603"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2827" version="1" check="at least one" comment="Patch 110286-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1620"/>
      <state state_ref="oval:org.mitre.oval:ste:2647"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:2931" version="1" check="at least one" comment="File kcms_server exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1672"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2929" version="1" check="at least one" comment="File kcms_server executable and SUID or SGID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1672"/>
      <state state_ref="oval:org.mitre.oval:ste:2745"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2928" version="1" check="at least one" comment="File kcms_server executable and SUID or SGID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1672"/>
      <state state_ref="oval:org.mitre.oval:ste:2744"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2927" version="1" check="at least one" comment="File kcms_server executable and SUID or SGID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1672"/>
      <state state_ref="oval:org.mitre.oval:ste:2743"/>
    </file_test>
    <package_test id="oval:org.mitre.oval:tst:661" version="1" check="all" comment="FTP Server - Usr (SUNWftpu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:530"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:660" version="1" check="all" comment="Patch 114564-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:529"/>
      <state state_ref="oval:org.mitre.oval:ste:592"/>
    </patch_test>
    <inetd_test id="oval:org.mitre.oval:tst:659" version="1" check="all" comment="inetd.conf contains in.ftpd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:528"/>
      <state state_ref="oval:org.mitre.oval:ste:591"/>
    </inetd_test>
    <patch_test id="oval:org.mitre.oval:tst:642" version="1" check="at least one" comment="Patch 106938-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:313"/>
      <state state_ref="oval:org.mitre.oval:ste:578"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:641" version="1" check="at least one" comment="Patch 109326-13 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:312"/>
      <state state_ref="oval:org.mitre.oval:ste:577"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:640" version="1" check="at least one" comment="Patch 112970-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:311"/>
      <state state_ref="oval:org.mitre.oval:ste:576"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:639" version="1" check="all" comment="Core Solaris (SUNWcsu/SUNWcsxu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>SUNWcsu = 32bit, SUNWcsxu = 64bit</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:519"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:630" version="1" check="at least one" comment="Patch 112908-13 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:442"/>
      <state state_ref="oval:org.mitre.oval:ste:568"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:629" version="1" check="at least one" comment="Patch 112908-12 installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:442"/>
      <state state_ref="oval:org.mitre.oval:ste:567"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:628" version="1" check="all" comment="/etc/pam.conf is configured to use pam_krb5 as an 'auth' module and the debug feature of pam_krb5 is enabled" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:511"/>
    </textfilecontent_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:627" version="1" check="all" comment="/etc/syslog.conf is configured to log &quot;debug&quot; level messages for at least daemon" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:510"/>
    </textfilecontent_test>
    <process_test id="oval:org.mitre.oval:tst:912" version="1" check="all" comment="smbd running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:684"/>
    </process_test>
    <package_test id="oval:org.mitre.oval:tst:615" version="1" check="all" comment="Samba (SUNWsmbar) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:507"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:614" version="1" check="all" comment="Patch 114684-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:506"/>
      <state state_ref="oval:org.mitre.oval:ste:556"/>
    </patch_test>
    <inetd_test id="oval:org.mitre.oval:tst:613" version="1" check="all" comment="inetd.conf contains smbd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:505"/>
      <state state_ref="oval:org.mitre.oval:ste:555"/>
    </inetd_test>
    <patch_test id="oval:org.mitre.oval:tst:607" version="1" check="all" comment="Patch 113575-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:399"/>
      <state state_ref="oval:org.mitre.oval:ste:551"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:586" version="1" check="all" comment="Patch 107684-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:351"/>
      <state state_ref="oval:org.mitre.oval:ste:531"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:585" version="1" check="all" comment="Patch 110615-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:350"/>
      <state state_ref="oval:org.mitre.oval:ste:530"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:584" version="1" check="all" comment="Patch 113575-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:399"/>
      <state state_ref="oval:org.mitre.oval:ste:529"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:581" version="1" check="at least one" comment="Patch 108748-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:487"/>
      <state state_ref="oval:org.mitre.oval:ste:527"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:580" version="1" check="at least one" comment="Patch 108750-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:486"/>
      <state state_ref="oval:org.mitre.oval:ste:526"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:579" version="1" check="at least one" comment="Patch 108752-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:485"/>
      <state state_ref="oval:org.mitre.oval:ste:525"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:578" version="1" check="at least one" comment="Patch 106541-14 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:291"/>
      <state state_ref="oval:org.mitre.oval:ste:524"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:577" version="1" check="at least one" comment="Patch 106942-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:484"/>
      <state state_ref="oval:org.mitre.oval:ste:523"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:576" version="1" check="at least one" comment="Patch 107477-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:483"/>
      <state state_ref="oval:org.mitre.oval:ste:522"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:575" version="1" check="at least one" comment="Patch 108551-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:482"/>
      <state state_ref="oval:org.mitre.oval:ste:521"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:574" version="1" check="at least one" comment="Patch 108754-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:481"/>
      <state state_ref="oval:org.mitre.oval:ste:520"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:573" version="1" check="at least one" comment="Patch 108756-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:480"/>
      <state state_ref="oval:org.mitre.oval:ste:519"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:572" version="1" check="at least one" comment="Patch 108758-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:479"/>
      <state state_ref="oval:org.mitre.oval:ste:518"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:571" version="1" check="at least one" comment="Patch 108760-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:478"/>
      <state state_ref="oval:org.mitre.oval:ste:517"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:570" version="1" check="at least one" comment="Patch 108762-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:477"/>
      <state state_ref="oval:org.mitre.oval:ste:516"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:569" version="1" check="at least one" comment="Patch 108764-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>CVE-2002-1265</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:476"/>
      <state state_ref="oval:org.mitre.oval:ste:515"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:568" version="1" check="at least one" comment="rpcbind running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:475"/>
    </process_test>
    <package_test id="oval:org.mitre.oval:tst:547" version="1" check="all" comment="NIS Server - User (SUNWypu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <oval-def:notes>
        <oval-def:note>Package which contains /usr/lib/netsvc/yp/ypxfrd</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:462"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:545" version="1" check="all" comment="Patch 109328-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:461"/>
      <state state_ref="oval:org.mitre.oval:ste:493"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:544" version="1" check="all" comment="Patch 113579-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:460"/>
      <state state_ref="oval:org.mitre.oval:ste:492"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:543" version="1" check="all" comment="ypxfrd running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:459"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:542" version="1" check="at least one" comment="Patch 106541-33 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:291"/>
      <state state_ref="oval:org.mitre.oval:ste:491"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:541" version="1" check="at least one" comment="Patch 109007-18 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:458"/>
      <state state_ref="oval:org.mitre.oval:ste:490"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:540" version="1" check="at least one" comment="Patch 114332-12 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:361"/>
      <state state_ref="oval:org.mitre.oval:ste:489"/>
    </patch_test>
    <unknown_test id="oval:org.mitre.oval:tst:539" version="1" comment="Basic Security Module enabled" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <oval-def:notes>
        <oval-def:note>grep c2audit /etc/system True if "set c2audit:audit_load = 1" or similiar</oval-def:note>
      </oval-def:notes>
    </unknown_test>
    <unknown_test id="oval:org.mitre.oval:tst:538" version="1" comment="Auditing Administrative or System-Wide Administrative audit classes" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <oval-def:notes>
        <oval-def:note>egrep ^flags:.*a[sd] /etc/security/audit_control True if any lines returned</oval-def:note>
      </oval-def:notes>
    </unknown_test>
    <patch_test id="oval:org.mitre.oval:tst:623" version="1" check="all" comment="Patch 106938-07 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:313"/>
      <state state_ref="oval:org.mitre.oval:ste:563"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:622" version="1" check="all" comment="Patch 109326-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:312"/>
      <state state_ref="oval:org.mitre.oval:ste:562"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:901" version="1" check="all" comment="Netscape installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:675"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:505" version="1" check="all" comment="Kodak Color Managment Server (KCMS) Runtime Environment (SUNWkcsrt/SUNWkcsrx) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:433"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:504" version="1" check="all" comment="Patch 114636-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:432"/>
      <state state_ref="oval:org.mitre.oval:ste:462"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:503" version="1" check="all" comment="Patch 107337-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:431"/>
      <state state_ref="oval:org.mitre.oval:ste:461"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:502" version="1" check="all" comment="Patch 111400-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:430"/>
      <state state_ref="oval:org.mitre.oval:ste:460"/>
    </patch_test>
    <inetd_test id="oval:org.mitre.oval:tst:2930" version="1" check="at least one" comment="inetd.conf contains kcms_server" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1673"/>
      <state state_ref="oval:org.mitre.oval:ste:2746"/>
    </inetd_test>
    <patch_test id="oval:org.mitre.oval:tst:501" version="1" check="at least one" comment="Patch 114796-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:429"/>
      <state state_ref="oval:org.mitre.oval:ste:459"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:500" version="1" check="at least one" comment="Sun Crypto Accelerator 4000 software installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:428"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:485" version="1" check="all" comment="Patch 113273-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:367"/>
      <state state_ref="oval:org.mitre.oval:ste:447"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:1169" version="1" check="all" comment="Toolktalk (SUNWtltk/SUNWtltkx) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:831"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:1168" version="1" check="at least one" comment="Patch 112808-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:830"/>
      <state state_ref="oval:org.mitre.oval:ste:1043"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:478" version="1" check="all" comment="X Window System Font Server (SUNWxwfs) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:412"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:477" version="1" check="all" comment="Patch 113923-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:411"/>
      <state state_ref="oval:org.mitre.oval:ste:441"/>
    </patch_test>
    <inetd_test id="oval:org.mitre.oval:tst:2870" version="1" check="at least one" comment="inetd.conf contains fs.auto" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1646"/>
      <state state_ref="oval:org.mitre.oval:ste:2688"/>
    </inetd_test>
    <patch_test id="oval:org.mitre.oval:tst:777" version="1" check="at least one" comment="Patch 112233-12 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:289"/>
      <state state_ref="oval:org.mitre.oval:ste:697"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:468" version="1" check="at least one" comment="Patch 116895-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:401"/>
      <state state_ref="oval:org.mitre.oval:ste:432"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:467" version="1" check="at least one" comment="Patch 117000-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:400"/>
      <state state_ref="oval:org.mitre.oval:ste:431"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:587" version="1" check="all" comment="Sendmail - user (SUNWsndmu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:489"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:466" version="1" check="all" comment="Patch 107684-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:351"/>
      <state state_ref="oval:org.mitre.oval:ste:430"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:465" version="1" check="all" comment="Patch 110615-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:350"/>
      <state state_ref="oval:org.mitre.oval:ste:429"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:458" version="1" check="at least one" comment="Patch 108219-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:395"/>
      <state state_ref="oval:org.mitre.oval:ste:423"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3052" version="1" check="at least one" comment="Patch 110896-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1686"/>
      <state state_ref="oval:org.mitre.oval:ste:2858"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:3109" version="1" check="at least one" comment="File Xsun exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1764"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3107" version="1" check="at least one" comment="File Xsun SGID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1764"/>
      <state state_ref="oval:org.mitre.oval:ste:2911"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3106" version="1" check="at least one" comment="File Xsun SGID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1764"/>
      <state state_ref="oval:org.mitre.oval:ste:2910"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:3044" version="1" check="at least one" comment="Patch 108376-38 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1460"/>
      <state state_ref="oval:org.mitre.oval:ste:2850"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:433" version="1" check="all" comment="Solaris Basic IP Commands (SUNWbip) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:383"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:432" version="1" check="at least one" comment="Patch 118313-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:382"/>
      <state state_ref="oval:org.mitre.oval:ste:399"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:431" version="1" check="at least one" comment="Patch 116986-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:381"/>
      <state state_ref="oval:org.mitre.oval:ste:398"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:430" version="1" check="at least one" comment="Patch 116774-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:380"/>
      <state state_ref="oval:org.mitre.oval:ste:397"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:484" version="1" check="all" comment="sshd running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:415"/>
    </process_test>
    <package_test id="oval:org.mitre.oval:tst:417" version="1" check="at least one" comment="Secure Shell Server - Usr (SUNWsshdu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:368"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:416" version="1" check="at least one" comment="Patch 113273-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:367"/>
      <state state_ref="oval:org.mitre.oval:ste:387"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:415" version="1" check="at least one" comment="/etc/ssh/sshd_config has 0.0.0.0 as ListenAddress" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:366"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:406" version="1" check="at least one" comment="Patch 114332-08 installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:361"/>
      <state state_ref="oval:org.mitre.oval:ste:379"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:405" version="1" check="at least one" comment="Patch 114332-10 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:361"/>
      <state state_ref="oval:org.mitre.oval:ste:378"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:404" version="1" check="at least one" comment="/etc/system has BSM enabled" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:360"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:397" version="1" check="all" comment="Patch 106950-14 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:354"/>
      <state state_ref="oval:org.mitre.oval:ste:372"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:396" version="1" check="all" comment="Patch 109147-07 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:353"/>
      <state state_ref="oval:org.mitre.oval:ste:371"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:395" version="1" check="all" comment="Patch 112963-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:352"/>
      <state state_ref="oval:org.mitre.oval:ste:370"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:608" version="1" check="at least one" comment="Sendmail - root (SUNWsndmr) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:502"/>
    </package_test>
    <process_test id="oval:org.mitre.oval:tst:583" version="1" check="at least one" comment="Sendmail running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:488"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:464" version="1" check="at least one" comment="Patch 113575-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:399"/>
      <state state_ref="oval:org.mitre.oval:ste:428"/>
    </patch_test>
    <unknown_test id="oval:org.mitre.oval:tst:393" version="1" comment="Sendmail has recipient or final rulesets" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <oval-def:notes>
        <oval-def:note>egrep "^[Srecipient=2|S2]|^[^#]*\$>2|^[^#]*\$>recipient|^[^#]*\$>4|^[^#]*\$>final" /etc/mail/sendmail.cf True if any lines returned</oval-def:note>
      </oval-def:notes>
    </unknown_test>
    <patch_test id="oval:org.mitre.oval:tst:392" version="1" check="at least one" comment="Patch 107684-11 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:351"/>
      <state state_ref="oval:org.mitre.oval:ste:368"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:391" version="1" check="at least one" comment="Patch 110615-11 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:350"/>
      <state state_ref="oval:org.mitre.oval:ste:367"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:546" version="1" check="all" comment="Patch 106541-24 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:291"/>
      <state state_ref="oval:org.mitre.oval:ste:494"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:390" version="1" check="at least one" comment="Patch 108528-18 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:290"/>
      <state state_ref="oval:org.mitre.oval:ste:366"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:389" version="1" check="at least one" comment="Patch 112233-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:289"/>
      <state state_ref="oval:org.mitre.oval:ste:365"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:383" version="1" check="at least one" comment="Patch 113146-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:215"/>
      <state state_ref="oval:org.mitre.oval:ste:359"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:379" version="1" check="all" comment="NTP daemon - Usr (SUNWntpu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:343"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:378" version="1" check="all" comment="Patch 109409-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:342"/>
      <state state_ref="oval:org.mitre.oval:ste:355"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:377" version="1" check="all" comment="Patch 109667-04 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:341"/>
      <state state_ref="oval:org.mitre.oval:ste:354"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:376" version="1" check="all" comment="xntpd running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:340"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:372" version="1" check="all" comment="Patch 109326-16 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:312"/>
      <state state_ref="oval:org.mitre.oval:ste:350"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:371" version="1" check="all" comment="File /etc/named.conf exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oval-def:notes>
        <oval-def:note>The presence of /etc/named.conf indicates that system system is probably configured as a DNS server</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:338"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:365" version="1" check="at least one" comment="Patch 109613-07 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:333"/>
      <state state_ref="oval:org.mitre.oval:ste:345"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:364" version="1" check="at least one" comment="Patch 112810-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:332"/>
      <state state_ref="oval:org.mitre.oval:ste:344"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:363" version="1" check="at least one" comment="CDE Desktop Applications (SUNWdtdst) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:331"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:352" version="1" check="all" comment="Solaris Print - Client - Root (SUNWpcr) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:319"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:351" version="1" check="all" comment="Solaris Print - Client - Usr (SUNWpcu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:318"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:350" version="1" check="all" comment="Solaris Print - LP Server - Root (SUNWpsr) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:317"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:349" version="1" check="all" comment="Solaris Print - LP Server - Usr (SUNWpsu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:316"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:348" version="1" check="all" comment="Patch 107115-13 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:300"/>
      <state state_ref="oval:org.mitre.oval:ste:335"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:347" version="1" check="all" comment="Patch 109320-07 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:315"/>
      <state state_ref="oval:org.mitre.oval:ste:334"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:346" version="1" check="all" comment="Patch 113329-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:314"/>
      <state state_ref="oval:org.mitre.oval:ste:333"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:3031" version="1" check="at least one" comment="Patch 112899-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1735"/>
      <state state_ref="oval:org.mitre.oval:ste:2839"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:345" version="1" check="all" comment="Patch 106938-06 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:313"/>
      <state state_ref="oval:org.mitre.oval:ste:332"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:344" version="1" check="all" comment="Patch 109326-09 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:312"/>
      <state state_ref="oval:org.mitre.oval:ste:331"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:343" version="1" check="all" comment="Patch 112970-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:311"/>
      <state state_ref="oval:org.mitre.oval:ste:330"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:342" version="1" check="all" comment="/etc/nsswitch.conf configured to resolve hosts through DNS" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:310"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:3024" version="1" check="at least one" comment="Patch 108800-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1731"/>
      <state state_ref="oval:org.mitre.oval:ste:2832"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:675" version="1" check="at least one" comment="CDE Desktop Window Manager (SUNWdtwm) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:539"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:331" version="1" check="at least one" comment="Patch 107893-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:301"/>
      <state state_ref="oval:org.mitre.oval:ste:321"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:753" version="1" check="all" comment="SunSoft Print - Client - Usr (SUNWpcu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:575"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:330" version="1" check="at least one" comment="Patch 107115-12 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:300"/>
      <state state_ref="oval:org.mitre.oval:ste:320"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:2626" version="1" check="all" comment="Internet Domain Name Server (BIND, SUNWinamd) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1497"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:2625" version="1" check="all" comment="Patch 112970-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:311"/>
      <state state_ref="oval:org.mitre.oval:ste:2453"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:2624" version="1" check="at least one" comment="in.named running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1496"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:319" version="1" check="at least one" comment="Patch 106541-25 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:291"/>
      <state state_ref="oval:org.mitre.oval:ste:310"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:318" version="1" check="at least one" comment="Patch 108528-19 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:290"/>
      <state state_ref="oval:org.mitre.oval:ste:309"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:317" version="1" check="at least one" comment="Patch 112233-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:289"/>
      <state state_ref="oval:org.mitre.oval:ste:308"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:511" version="1" check="at least one" comment="Patch 113505-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:439"/>
      <state state_ref="oval:org.mitre.oval:ste:466"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:510" version="1" check="at least one" comment="Patch 113508-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:438"/>
      <state state_ref="oval:org.mitre.oval:ste:465"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:509" version="1" check="at least one" comment="Patch 115054-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:437"/>
      <state state_ref="oval:org.mitre.oval:ste:464"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:508" version="1" check="at least one" comment="Patch 115055-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:436"/>
      <state state_ref="oval:org.mitre.oval:ste:463"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:507" version="1" check="at least one" comment="SunCluster Component SUNWscvw installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:435"/>
    </package_test>
    <process_test id="oval:org.mitre.oval:tst:506" version="1" check="at least one" comment="Apache running with SunPlex Manager config" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:434"/>
    </process_test>
    <process_test id="oval:org.mitre.oval:tst:314" version="1" check="at least one" comment="Kerberos Key Distribution Center (krb5kdc) running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:288"/>
    </process_test>
    <package_test id="oval:org.mitre.oval:tst:1070" version="1" check="all" comment="Mozilla (SUNWmoznav) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:784"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:1069" version="1" check="all" comment="Mozilla Mail (SUNWmozmail) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:783"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:1068" version="1" check="all" comment="Patch 117765-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:782"/>
      <state state_ref="oval:org.mitre.oval:ste:954"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:1067" version="1" check="all" comment="Patch 117767-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:781"/>
      <state state_ref="oval:org.mitre.oval:ste:953"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:300" version="1" check="at least one" comment="Patch 108993-38 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:275"/>
      <state state_ref="oval:org.mitre.oval:ste:294"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:299" version="1" check="at least one" comment="Patch 112960-17 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:274"/>
      <state state_ref="oval:org.mitre.oval:ste:293"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:298" version="1" check="at least one" comment="/etc/nsswitch.conf configured to use LDAP with RBAC" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:273"/>
    </textfilecontent_test>
    <patch_test id="oval:org.mitre.oval:tst:656" version="1" check="at least one" comment="Patch 116973-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:217"/>
      <state state_ref="oval:org.mitre.oval:ste:588"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:655" version="1" check="at least one" comment="Patch 113146-05 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:215"/>
      <state state_ref="oval:org.mitre.oval:ste:587"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:654" version="1" check="at least one" comment="Apache running (httpd)" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:526"/>
    </process_test>
    <package_test id="oval:org.mitre.oval:tst:653" version="1" check="at least one" comment="Apache (SUNWapchu) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:525"/>
    </package_test>
    <file_test id="oval:org.mitre.oval:tst:648" version="1" check="at least one" comment="Kerberos 5 installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:521"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:616" version="1" check="at least one" comment="Patch 112908-15 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:442"/>
      <state state_ref="oval:org.mitre.oval:ste:557"/>
    </patch_test>
    <textfilecontent_test id="oval:org.mitre.oval:tst:1153" version="1" check="all" comment="/etc/krb5/krb5.conf is configured with a kerberos domain" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <oval-def:notes>
        <oval-def:note>Rough translation of the Sun recommended test of: % grep default_realm /etc/krb5/krb5.conf | grep -v ___default_realm___  default_realm = EXAMPLE.COM</oval-def:note>
      </oval-def:notes>
      <object object_ref="oval:org.mitre.oval:obj:824"/>
    </textfilecontent_test>
    <package_test id="oval:org.mitre.oval:tst:459" version="1" check="all" comment="CDE application basic runtime environment (SUNWdtbas/SUNWdtbax) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:396"/>
    </package_test>
    <package_test id="oval:org.mitre.oval:tst:280" version="1" check="all" comment="Separable help for CDE (SUNWdthep) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:258"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:279" version="1" check="all" comment="Patch 107178-03 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:257"/>
      <state state_ref="oval:org.mitre.oval:ste:277"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:278" version="1" check="all" comment="Patch 108949-08 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:256"/>
      <state state_ref="oval:org.mitre.oval:ste:276"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:277" version="1" check="all" comment="Patch 116308-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:255"/>
      <state state_ref="oval:org.mitre.oval:ste:275"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2562" version="1" check="all" comment="Patch 108376-25 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1460"/>
      <state state_ref="oval:org.mitre.oval:ste:2395"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2561" version="1" check="all" comment="Patch 108652-30 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:876"/>
      <state state_ref="oval:org.mitre.oval:ste:2394"/>
    </patch_test>
    <package_test id="oval:org.mitre.oval:tst:2560" version="1" check="all" comment="X Window System platform software (SUNWxwplt) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1459"/>
    </package_test>
    <file_test id="oval:org.mitre.oval:tst:3006" version="1" check="at least one" comment="File rpc.yppasswdd exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1721"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:3005" version="1" check="at least one" comment="Patch 111596-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1720"/>
      <state state_ref="oval:org.mitre.oval:ste:2815"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:3004" version="1" check="at least one" comment="rpc.yppasswdd running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1719"/>
    </process_test>
    <package_test id="oval:org.mitre.oval:tst:2525" version="1" check="all" comment="Remote Network Server Commands - Usr (SUNWrcmds) installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1441"/>
    </package_test>
    <patch_test id="oval:org.mitre.oval:tst:2524" version="1" check="all" comment="Patch 118239-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1440"/>
      <state state_ref="oval:org.mitre.oval:ste:2363"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2523" version="1" check="all" comment="Patch 116984-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1439"/>
      <state state_ref="oval:org.mitre.oval:ste:2362"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2522" version="1" check="all" comment="Patch 117455-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1438"/>
      <state state_ref="oval:org.mitre.oval:ste:2361"/>
    </patch_test>
    <process_test id="oval:org.mitre.oval:tst:2521" version="1" check="all" comment="in.rwhod is running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1437"/>
    </process_test>
    <patch_test id="oval:org.mitre.oval:tst:2994" version="1" check="at least one" comment="Patch 107709-19 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:868"/>
      <state state_ref="oval:org.mitre.oval:ste:2806"/>
    </patch_test>
    <patch_test id="oval:org.mitre.oval:tst:2989" version="1" check="at least one" comment="Patch 107337-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:431"/>
      <state state_ref="oval:org.mitre.oval:ste:2802"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:3144" version="1" check="at least one" comment="File kcms_configure exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1787"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3143" version="1" check="at least one" comment="File kcms_configure executable and SUID or SGID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1787"/>
      <state state_ref="oval:org.mitre.oval:ste:2940"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3142" version="1" check="at least one" comment="File kcms_configure executable and SUID or SGID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1787"/>
      <state state_ref="oval:org.mitre.oval:ste:2939"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3141" version="1" check="at least one" comment="File kcms_configure executable and SUID or SGID" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1787"/>
      <state state_ref="oval:org.mitre.oval:ste:2938"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3032" version="1" check="at least one" comment="File rpc.rwalld exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1733"/>
    </file_test>
    <inetd_test id="oval:org.mitre.oval:tst:3030" version="1" check="at least one" comment="inetd.conf contains rpc.rwalld" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1734"/>
      <state state_ref="oval:org.mitre.oval:ste:2838"/>
    </inetd_test>
    <file_test id="oval:org.mitre.oval:tst:3029" version="1" check="at least one" comment="File rpc.rwalld executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1733"/>
      <state state_ref="oval:org.mitre.oval:ste:2837"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3028" version="1" check="at least one" comment="File rpc.rwalld executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1733"/>
      <state state_ref="oval:org.mitre.oval:ste:2836"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3027" version="1" check="at least one" comment="File rpc.rwalld executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1733"/>
      <state state_ref="oval:org.mitre.oval:ste:2835"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:2970" version="1" check="at least one" comment="Patch 112846-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1699"/>
      <state state_ref="oval:org.mitre.oval:ste:2784"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:2964" version="1" check="at least one" comment="File lbxproxy exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1696"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:2963" version="1" check="at least one" comment="Patch 108652-51 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:876"/>
      <state state_ref="oval:org.mitre.oval:ste:2778"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:2962" version="1" check="at least one" comment="File lbxproxy SGID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1696"/>
      <state state_ref="oval:org.mitre.oval:ste:2777"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:2961" version="1" check="at least one" comment="File lbxproxy SGID and executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1696"/>
      <state state_ref="oval:org.mitre.oval:ste:2776"/>
    </file_test>
    <uname_test id="oval:org.mitre.oval:tst:1547" version="1" check="at least one" comment="ix86 architecture" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:1401"/>
    </uname_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1546" version="1" check="at least one" comment="kernel version is less than 2.4.21-9.EL" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1039"/>
      <state state_ref="oval:org.mitre.oval:ste:1400"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1545" version="1" check="at least one" comment="net-snmp version is less than 5.0.9-2.30E.1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1038"/>
      <state state_ref="oval:org.mitre.oval:ste:1399"/>
    </rpminfo_test>
    <inetlisteningservers_test id="oval:org.mitre.oval:tst:1544" version="1" check="at least one" comment="snmpd is listening to the network" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1037"/>
      <state state_ref="oval:org.mitre.oval:ste:1398"/>
    </inetlisteningservers_test>
    <file_test id="oval:org.mitre.oval:tst:3105" version="1" check="at least one" comment="File rpc.ttdbserverd exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1762"/>
    </file_test>
    <inetd_test id="oval:org.mitre.oval:tst:3103" version="1" check="at least one" comment="inetd.conf contains rpc.ttdbserverd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1763"/>
      <state state_ref="oval:org.mitre.oval:ste:2908"/>
    </inetd_test>
    <file_test id="oval:org.mitre.oval:tst:3102" version="1" check="at least one" comment="File rpc.ttdbserverd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1762"/>
      <state state_ref="oval:org.mitre.oval:ste:2907"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3101" version="1" check="at least one" comment="File rpc.ttdbserverd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1762"/>
      <state state_ref="oval:org.mitre.oval:ste:2906"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3100" version="1" check="at least one" comment="File rpc.ttdbserverd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1762"/>
      <state state_ref="oval:org.mitre.oval:ste:2905"/>
    </file_test>
    <uname_test id="oval:org.mitre.oval:tst:3045" version="1" check="at least one" comment="Solaris 7 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2851"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:2969" version="1" check="at least one" comment="Patch 107893-19 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:301"/>
      <state state_ref="oval:org.mitre.oval:ste:2783"/>
    </patch_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:2861" version="1" check="at least one" comment="Red Hat Enterprise 3 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1414"/>
      <state state_ref="oval:org.mitre.oval:ste:2679"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1543" version="1" check="at least one" comment="openssl version is less than 0.9.7a-33.4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1036"/>
      <state state_ref="oval:org.mitre.oval:ste:1397"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1542" version="1" check="at least one" comment="openssl-devel version is less than 0.9.7a-33.4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1035"/>
      <state state_ref="oval:org.mitre.oval:ste:1396"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1541" version="1" check="at least one" comment="openssl-perl version is less than 0.9.7a-33.4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1034"/>
      <state state_ref="oval:org.mitre.oval:ste:1395"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1540" version="1" check="at least one" comment="openssl096b version is less than 0.9.6b-16" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1033"/>
      <state state_ref="oval:org.mitre.oval:ste:1394"/>
    </rpminfo_test>
    <patch_test id="oval:org.mitre.oval:tst:3125" version="1" check="at least one" comment="Patch 108869-16 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:867"/>
      <state state_ref="oval:org.mitre.oval:ste:2927"/>
    </patch_test>
    <file_test id="oval:org.mitre.oval:tst:2995" version="1" check="at least one" comment="File mibiisa exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1713"/>
    </file_test>
    <process_test id="oval:org.mitre.oval:tst:2993" version="1" check="at least one" comment="mibiisa running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1712"/>
    </process_test>
    <uname_test id="oval:org.mitre.oval:tst:3145" version="1" check="at least one" comment="Solaris 8 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2941"/>
    </uname_test>
    <process_test id="oval:org.mitre.oval:tst:3135" version="1" check="at least one" comment="inetd running" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1782"/>
      <state state_ref="oval:org.mitre.oval:ste:2934"/>
    </process_test>
    <file_test id="oval:org.mitre.oval:tst:3053" version="1" check="at least one" comment="File cachefsd exists" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1743"/>
    </file_test>
    <uname_test id="oval:org.mitre.oval:tst:3051" version="1" check="at least one" comment="Solaris 9 Installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2857"/>
    </uname_test>
    <patch_test id="oval:org.mitre.oval:tst:3050" version="1" check="at least one" comment="Patch 114008-01 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1745"/>
      <state state_ref="oval:org.mitre.oval:ste:2856"/>
    </patch_test>
    <inetd_test id="oval:org.mitre.oval:tst:3049" version="1" check="at least one" comment="inetd.conf contains cachefsd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1744"/>
      <state state_ref="oval:org.mitre.oval:ste:2855"/>
    </inetd_test>
    <file_test id="oval:org.mitre.oval:tst:3048" version="1" check="at least one" comment="File cachefsd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1743"/>
      <state state_ref="oval:org.mitre.oval:ste:2854"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3047" version="1" check="at least one" comment="File cachefsd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1743"/>
      <state state_ref="oval:org.mitre.oval:ste:2853"/>
    </file_test>
    <file_test id="oval:org.mitre.oval:tst:3046" version="1" check="at least one" comment="File cachefsd executable" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:1743"/>
      <state state_ref="oval:org.mitre.oval:ste:2852"/>
    </file_test>
    <patch_test id="oval:org.mitre.oval:tst:2946" version="1" check="at least one" comment="Patch 110896-02 or later installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <object object_ref="oval:org.mitre.oval:obj:1686"/>
      <state state_ref="oval:org.mitre.oval:ste:2761"/>
    </patch_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:3153" version="1" check="at least one" comment="Red Hat 9 is installed" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1414"/>
      <state state_ref="oval:org.mitre.oval:ste:2949"/>
    </rpminfo_test>
    <uname_test id="oval:org.mitre.oval:tst:3152" version="1" check="at least one" comment="ix86 architecture" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <object object_ref="oval:org.mitre.oval:obj:679"/>
      <state state_ref="oval:org.mitre.oval:ste:2948"/>
    </uname_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1484" version="1" check="at least one" comment="openssl version is less than 0.9.7a-20" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1007"/>
      <state state_ref="oval:org.mitre.oval:ste:1341"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1483" version="1" check="at least one" comment="openssl-devel version is less than 0.9.7a-20" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1006"/>
      <state state_ref="oval:org.mitre.oval:ste:1340"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1482" version="1" check="at least one" comment="openssl-perl version is less than 0.9.7a-20" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1005"/>
      <state state_ref="oval:org.mitre.oval:ste:1339"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1481" version="1" check="at least one" comment="openssl096 version is less than 0.9.6-25.9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1004"/>
      <state state_ref="oval:org.mitre.oval:ste:1338"/>
    </rpminfo_test>
    <rpminfo_test id="oval:org.mitre.oval:tst:1480" version="1" check="at least one" comment="openssl096b version is less than 0.9.6b-15" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:1003"/>
      <state state_ref="oval:org.mitre.oval:ste:1337"/>
    </rpminfo_test>
  </tests>
  <objects>
    <patch_object id="oval:org.mitre.oval:obj:427" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112604</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:426" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112609</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:425" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">115172</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:424" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/etc</path>
      <filename operation="pattern match">hostname6?\.le.*</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1741" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">111600</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:376" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">113073</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:375" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWlvmr</pkginst>
    </package_object>
    <file_object id="oval:org.mitre.oval:obj:374" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="pattern match">/etc/rc[2-4].d</path>
      <filename operation="pattern match">S[0-9][0-9]svm.init</filename>
    </file_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:373" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc</path>
      <filename>vfstab</filename>
      <line operation="pattern match">^/dev/md/</line>
    </textfilecontent_object>
    <file_object id="oval:org.mitre.oval:obj:1742" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="pattern match">^/usr/sbin/sparcv.$</path>
      <filename>whodo</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1727" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">111826</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1398" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109321</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1397" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">114890</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1396" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120467</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1395" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120468</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1394" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="pattern match">^/etc/lp/printers/.*</path>
      <filename xsi:nil="true"/>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1708" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110453</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1726" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="pattern match">^(/usr)?/bin$</path>
      <filename>admintool</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1707" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108721</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:977" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/bin</path>
      <filename>mount</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:761" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gedit</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:760" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gedit</filename>
    </file_object>
    <package_object id="oval:org.mitre.oval:obj:752" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWadmfw</pkginst>
    </package_object>
    <inetd_object id="oval:org.mitre.oval:obj:751" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/sbin/sadmind</service_name>
    </inetd_object>
    <patch_object id="oval:org.mitre.oval:obj:750" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116457</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:749" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116442</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:748" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116454</base>
    </patch_object>
    <inetd_object id="oval:org.mitre.oval:obj:747" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/sbin/sadmind</service_name>
    </inetd_object>
    <file_object id="oval:org.mitre.oval:obj:703" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/usr/dt/bin</path>
      <filename>dtlogin</filename>
    </file_object>
    <process_object id="oval:org.mitre.oval:obj:702" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*dtlogin.*</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:701" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108919</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:700" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112807</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:699" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107180</base>
    </patch_object>
    <inetd_object id="oval:org.mitre.oval:obj:1704" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/dt/bin/dtspcd</service_name>
    </inetd_object>
    <file_object id="oval:org.mitre.oval:obj:1703" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/dt/bin</path>
      <filename>dtspcd</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1701" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">106934</base>
    </patch_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1042" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1041" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-smp</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1040" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-bigmem</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:920" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>squirrelmail</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:919" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>php</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:918" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/etc/httpd/modules</path>
      <filename>libphp4.so</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:915" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-unsupported</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:880" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>fetchmail</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:877" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>cvs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:857" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openoffice</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:856" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>oocalc</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:855" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>oodraw</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:854" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ooffice</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:853" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ooimpress</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:852" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>oowriter</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:838" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>bzgrep</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:836" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>rh-postgresql-contrib</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:835" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/usr/lib/pgsql</path>
      <filename>tsearch.so</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:829" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>zgrep</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1680" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>evolution</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:879" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>fetchmail</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:819" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>fetchmail</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:815" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>telnet</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:800" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libxml</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:799" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libxml-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:822" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:821" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-hugemem</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:820" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-smp</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:764" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>sudo</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:763" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/etc</path>
      <filename>sudoers</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:762" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>sudo</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:792" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libgd</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:791" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libgd-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1677" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gdm</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1668" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ghostscript</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1667" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gs</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:722" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>FreeRADIUS</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:721" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="equals">udp</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="equals">1812</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1665" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gnupg</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1664" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gnupg</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1663" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gtkhtml</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1650" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gtkhtml</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1649" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>evolution</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1644" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>httpd</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1639" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl-perl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1638" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1637" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1636" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl096b</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1643" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1634" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>httpd</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1791" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>balsa</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1790" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>balsa</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1619" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kdebase</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1618" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>kdm</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1597" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>krb5-server</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1582" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>krb5-libs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1581" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>krb5-workstation</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1579" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1751" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ddskk</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1750" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ddskk-xemacs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1565" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:410" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:409" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-hugemem</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:408" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-smp</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1542" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>php</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1540" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/etc/httpd/conf.d</path>
      <filename>php.conf</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1539" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>cpio</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1538" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/bin</path>
      <filename>cpio</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:349" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libpng</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:348" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libpng-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:347" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libpng10-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:346" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libpng10</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1529" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gzip</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1528" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gzip</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1527" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gunzip</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1574" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1556" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1521" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kdelibs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1516" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>lprng</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1515" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/libexec/filters</path>
      <filename>psbanner</filename>
    </file_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1514" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1507" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>lv</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1506" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mutt</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1504" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mysql-server</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1503" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1502" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>nfs-utils</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1501" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1500" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssh-server</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1499" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1498" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssh-server</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1492" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1491" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1490" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl-perl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1489" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl096</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1488" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl096b</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1483" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>pam_smb</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1482" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>perl-CGI</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1471" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>php</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1468" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>pine</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1467" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pine</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1724" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>eog</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1723" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>eog</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1466" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>postfix</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1465" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1722" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1461" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="equals">TCP</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1462" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>samba</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1458" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>samba</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1456" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>wl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1455" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>wl-xemacs</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1454" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>emacs</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1453" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>xemacs</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1452" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>sendmail</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1433" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>sendmail</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1432" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1789" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>cups</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1788" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <file_object id="oval:org.mitre.oval:obj:1451" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/sbin</path>
      <filename>sendmail.sendmail</filename>
    </file_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1450" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="equals">TCP</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1434" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>sendmail</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1424" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>squirrelmail</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1423" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>unzip</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1422" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>unzip</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1421" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>sysreport</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1420" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/tmp</path>
      <filename xsi:nil="true"/>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1419" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>up2date</name>
    </rpminfo_object>
    <process_object id="oval:org.mitre.oval:obj:1418" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*rhnsd.*$</command>
    </process_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1417" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>vsftpd</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1416" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="equals">TCP</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1406" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mikmod</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1405" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>mikmod</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1400" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>xinetd</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1399" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1393" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>xpdf</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1392" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>xpdf</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1391" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ypserv</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1390" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1384" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>rh-postgresql-server</name>
    </rpminfo_object>
    <process_object id="oval:org.mitre.oval:obj:1383" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">\bpostmaster\b</command>
    </process_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1371" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ImageMagick</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1369" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gftp</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1368" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gftp</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1573" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gaim</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1363" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>bzip2</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1362" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>bzip2</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1338" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>pwlib</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1336" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>netpbm</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1335" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>netpbm-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1334" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>netpbm-progs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1519" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mozilla</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1108" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>XFree86</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1333" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>411toppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1332" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>asciitopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1331" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>atktopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1330" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>bioradtopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1329" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>bmptoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1328" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>brushtopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1327" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>cmuwmtopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1326" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>eyuvtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1325" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>fiascotopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1324" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>fitstopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1323" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>fstopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1322" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>g3topbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1321" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gemtopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1320" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gemtopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1319" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>giftopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1318" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gouldtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1317" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>hipstopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1316" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>hpcdtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1315" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>icontopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1314" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ilbmtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1313" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>imgtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1312" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>jpegtopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1311" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>leaftoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1310" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>lispmtopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1309" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>macptopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1308" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>mdatopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1307" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>mgrtopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1306" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>mtvtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1305" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>neotoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1304" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>palmtopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1303" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pamchannel</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1302" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pamcut</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1301" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pamdeinterlace</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1300" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pamfile</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1299" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pamoil</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1298" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pamstretch</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1297" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pamtopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1296" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmclean</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1295" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmlife</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1294" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmmake</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1293" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmmask</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1292" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmpage</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1291" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmpscale</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1290" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmreduce</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1289" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtext</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1288" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmto10x</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1287" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmto4425</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1286" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoascii</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1285" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoatk</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1284" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtobbnbg</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1283" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtocmuwm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1282" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoepsi</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1281" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoepson</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1280" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtog3</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1279" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtogem</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1278" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtogo</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1277" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoicon</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1276" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtolj</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1275" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoln03</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1274" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtolps</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1273" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtomacp</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1272" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtomda</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1271" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtomgr</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1270" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtonokia</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1269" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1268" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtopi3</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1267" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtopk</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1266" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoplot</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1265" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoppa</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1264" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtopsg3</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1263" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoptx</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1262" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtowbmp</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1261" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtox10bm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1260" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoxbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1259" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtoybm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1258" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmtozinc</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1257" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pbmupc</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1256" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pcxtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1255" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmbentley</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1254" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmcrater</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1253" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmedge</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1252" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmenhance</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1251" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmhist</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1250" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmkernel</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1249" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmnoise</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1248" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmnorm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1247" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmoil</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1246" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmramp</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1245" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmslice</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1244" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmtexture</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1243" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmtofs</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1242" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmtolispm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1241" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmtopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1240" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pgmtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1239" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pi1toppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1238" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pi3topbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1237" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pjtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1236" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pktopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1235" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pngtopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1234" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmalias</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1233" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmarith</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1232" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmcat</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1231" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmcolormap</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1230" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmcomp</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1229" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmconvol</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1228" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmcrop</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1227" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmcut</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1226" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmdepth</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1225" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmenlarge</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1224" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmfile</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1223" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmflip</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1222" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmgamma</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1221" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmhisteq</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1220" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmhistmap</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1219" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnminterp</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1218" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnminvert</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1217" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmmontage</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1216" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmnlfilt</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1215" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmnoraw</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1214" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmpad</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1213" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmpaste</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1212" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmpsnr</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1211" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmremap</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1210" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmrotate</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1209" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmscale</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1208" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtopict</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1207" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtopj</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1206" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtopjxl</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1205" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtopuzz</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1204" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtorgb3</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1203" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtosixel</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1202" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtotga</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1201" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtouil</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1200" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtowinicon</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1199" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoxpm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1198" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoyuv</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1197" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoyuvsplit</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1196" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtv</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1195" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>psidtopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1194" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pstopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1193" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>qrttoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1192" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>rasttopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1191" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>rawtopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1190" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>rawtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1189" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>rgb3toppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1188" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>rletopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1187" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>sbigtopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1186" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>sgitopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1185" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>sirtopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1184" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>sldtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1183" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>spctoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1182" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>spottopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1181" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>sputoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1180" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>tgatoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1179" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>thinkjettopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1178" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>tifftopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1177" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>wbmptopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1176" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>winicontoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1175" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>xbmtopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1174" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ximtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1173" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>xpmtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1172" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>xvminitoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1171" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>xwdtopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1170" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ybmtopbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1169" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>yuvsplittoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1168" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>yuvtoppm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1167" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>zeisstopnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1166" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmscalefixed</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1165" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmshear</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1164" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmsmooth</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1163" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmsplit</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1162" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtile</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1161" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtoddif</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1160" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtofiasco</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1159" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtofits</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1158" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtojpeg</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1157" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtopalm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1156" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtoplainpnm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1155" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtopng</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1154" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtops</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1153" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtorast</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1152" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtorle</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1151" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtosgi</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1150" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtosir</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1149" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtotiff</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1148" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtotiffcmyk</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1147" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>pnmtoxwd</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1146" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppm3d</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1145" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmbrighten</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1144" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmchange</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1143" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmcie</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1142" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmcolormask</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1141" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmcolors</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1140" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmdim</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1139" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmdist</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1138" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmdither</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1137" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmflash</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1136" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmforge</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1135" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmhist</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1134" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmlabel</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1133" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmmake</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1132" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmmix</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1131" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmnorm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1130" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmntsc</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1129" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmpat</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1128" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmquant</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1127" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmqvga</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1126" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmrelief</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1125" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmshift</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1124" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmspread</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1123" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoacad</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1122" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtobmp</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1121" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoeyuv</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1120" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtogif</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1119" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoicr</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1118" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoilbm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1117" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtojpeg</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1116" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoleaf</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1115" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtolj</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1114" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtomitsu</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1113" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtompeg</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1112" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtoneo</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1111" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtopcx</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1110" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtopgm</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1109" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ppmtopi1</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1106" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>netpbm</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1105" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>netpbm-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1104" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>netpbm-progs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1103" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mutt</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1102" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mailman</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1101" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="equals">TCP</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1413" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mozilla</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1100" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gaim</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1099" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>gaim</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1098" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>slocate</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1097" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>slocate</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1096" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mc</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1095" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>mc</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1520" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>konqueror</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1094" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kdelibs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1093" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1092" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-smp</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1091" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-hugemem</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1337" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="equals">1720</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1090" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>pwlib</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1457" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1089" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>samba</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1107" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/X11R6/bin</path>
      <filename>XFree86</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1086" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>XFree86</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1082" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1081" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-smp</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1080" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-bigmem</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1505" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>mutt</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1079" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mutt</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1088" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mod_python</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1068" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gdk-pixbuf</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1067" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gdk-pixbuf-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1066" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gdk-pixbuf-gnome</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1065" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gdk-pixbuf</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1064" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gdk-pixbuf-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1063" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>gdk-pixbuf-gnome</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1061" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>sysstat</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1062" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>tcpdump</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1060" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>tcpdump</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1059" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>cvs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1057" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1056" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal=gnome</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1055" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/sbin</path>
      <filename>tethereal</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1054" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kdepim</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1052" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1051" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-smp</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1050" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-bigmem</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1049" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>nfs-utils</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1048" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1047" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>sysstat</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1046" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>httpd</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1633" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1045" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>httpd</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1053" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/share/services</path>
      <filename>kfile_vcf.desktop</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1044" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kdepim</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1058" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/</path>
      <filename xsi:nil="true"/>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1043" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>cvs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1032" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mozilla-nss</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1031" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mozilla</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:1030" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>mozilla</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1085" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libxml2</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1084" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libxml2-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1083" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libxml2-python</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1087" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="equals">TCP</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1029" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mod_ssl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1028" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>squid</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1706" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1705" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal-gnome</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1026" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1025" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal-gnome</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1013" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1012" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal-gnome</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:996" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mozilla-nss</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:980" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:979" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-smp</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:978" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel-hugemem</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1027" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:976" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>squid</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:972" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kdelibs</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:814" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>telnet</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:971" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/kerberos/bin</path>
      <filename>telnet</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:970" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>rlogin</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:969" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/kerberos/bin</path>
      <filename>rlogin</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:968" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ssh</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:967" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>kmail</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:963" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ImageMagick</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:959" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>rsync</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:954" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>cvs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:952" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libpng</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:951" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libpng-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:950" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libpng</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:949" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>libpng-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:948" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>tcpdump</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:947" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/sbin</path>
      <filename>tcpdump</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:946" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>lha</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:945" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>lha</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:944" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>utempter</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:943" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/sbin</path>
      <filename>utempter</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:942" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>squid</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:941" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:975" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ipsec-tools</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:974" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="equals">UDP</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <file_object id="oval:org.mitre.oval:obj:1024" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>ethereal</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1023" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/sbin</path>
      <filename>ethereal</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1022" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>tethereal</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:940" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:939" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ethereal-gnome</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:937" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>krb5-libs</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:953" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/bin</path>
      <filename>cvs</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:933" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>cvs</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:930" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <file_object id="oval:org.mitre.oval:obj:929" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/proc/tty/driver</path>
      <filename>serial</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:928" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/proc/tty/driver</path>
      <filename/>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:927" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/proc/tty</path>
      <filename/>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:926" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/proc</path>
      <filename/>
    </file_object>
    <isainfo_object id="oval:org.mitre.oval:obj:2704" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris"/>
    <uname_object id="oval:org.mitre.oval:obj:2733" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix"/>
    <patch_object id="oval:org.mitre.oval:obj:2090" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118844</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1883" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_28847</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2770" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_29963</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:2380" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.ARRAY-MGMT</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2623" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.ADMN-ENG-A-MAN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:2700" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_23263</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2756" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33159</patch_name>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:2563" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path>/etc</path>
      <filename>pam.conf</filename>
      <line operation="pattern match">[^#]*pam_krb5.+debug.*/etc/pam\.conf.*</line>
    </textfilecontent_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:1866" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path>/etc</path>
      <filename>syslog.conf</filename>
      <line operation="pattern match">[^#]*(debug|daemon\.debug).*/etc/syslog\.conf</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:2730" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119255</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2444" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119254</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2245" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119450</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2729" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119449</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1862" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_30302</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2785" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_30006</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:2749" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.ARRAY-MGMT</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2181" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.ADMN-ENG-A-MAN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:2516" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_23262</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:2481" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.ARRAY-MGMT</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2293" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.ADMN-ENG-A-MAN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:2778" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120954</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2051" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_34077</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:2424" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:2341" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33412</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:2530" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1871" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>WUFTP-26.INETSVCS-FTP</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2115" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:1815" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33414</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2358" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_23261</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:1876" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.C2400-UTIL</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2208" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.ADMN-ENG-A-MAN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2161" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>WUFTP-26.INETSVCS-FTP</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:2784" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_29964</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:2529" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>DCE-Core.DCE-CORE-SHLIB</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2602" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>SW-DIST.SD-AGENT</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:1856" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_28848</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2218" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118822</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1890" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118844</base>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:2556" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>TOUR_PRODUCT.T-NET2-KRN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:2081" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_32606</patch_name>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:2655" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWkrgdo</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:2213" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWkr5sv</pkginst>
    </package_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:2143" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path>/etc/krb5</path>
      <filename>krb5.conf</filename>
      <line operation="pattern match">[^(#|_)]*default_realm[^_]*</line>
    </textfilecontent_object>
    <package_object id="oval:org.mitre.oval:obj:2138" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWkrggl</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:2617" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWkr5sl</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:1973" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33395</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:2356" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist operation="pattern match">Perl5.*\.PERL-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2426" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist operation="pattern match">Perl5.*\.PERL-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1863" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist operation="pattern match">Perl5.*\.PERL-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2267" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist operation="pattern match">Perl5.*\.PERL-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:2172" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist operation="pattern match">Perl5.*\.PERL-RUN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:1830" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112238</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:2551" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWCryr</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:2709" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112390</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1845" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">115168</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2466" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112237</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2128" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120469</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2599" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112240</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2196" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112537</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2752" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120470</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2309" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112908</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1847" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112536</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:2361" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWCry</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:2033" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWamsvc</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:2616" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120955</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2288" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112669</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1949" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112668</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2548" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">116341</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2010" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">116340</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2637" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120720</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2345" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120719</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2678" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33427</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1996" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112785</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2544" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119059</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1927" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/openwin/bin</path>
      <filename>Xprt</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:2024" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119060</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2362" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112786</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2405" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">108652</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:2007" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">108653</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:2350" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/openwin/bin</path>
      <filename>Xsun</filename>
    </file_object>
    <uname_object id="oval:org.mitre.oval:obj:2759" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix"/>
    <patch_object id="oval:org.mitre.oval:obj:875" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119059</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:874" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">108653</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:873" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119060</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:872" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match">.*Xsun\b.*</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:640" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_29249</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1403" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_30983</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1402" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_31732</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:936" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.CORE2-KRN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:935" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHKL_33713</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:934" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHKL_33714</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:925" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118908</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:924" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/X11/bin</path>
      <filename>Xorg</filename>
    </file_object>
    <process_object id="oval:org.mitre.oval:obj:923" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match">.*Xorg\b.*</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:216" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">116974</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:214" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">114145</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:213" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">111844</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:212" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">111845</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:211" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112785</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:210" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112786</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:209" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118953</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:208" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118954</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:207" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109931</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:206" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109932</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:205" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">114219</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:204" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWTiff</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:203" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWTiffx</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:202" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">114220</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:201" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119900</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:200" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119901</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:888" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_24395</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:848" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119985</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:847" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">122082</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:827" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWkr5sl</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:826" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWkrgdo</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:825" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWkrggl</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:808" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33791</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:788" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_24395</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:779" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>VaultTS.VV-IWS</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:778" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>VaultWS.WS-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:777" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34121</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:776" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>VaultTS.VV-IWS</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:775" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34170</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:774" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>VaultWS.WS-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:773" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34120</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:772" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>VaultTS.VV-IWS</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:771" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34171</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:770" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>VaultWS.WS-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:769" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34119</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:768" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>HP_Webproxy.HPWEB-PX-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:767" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34203</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:766" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>HP_Webproxy.HPWEB-PX-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:765" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34204</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:754" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_34306</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:746" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_23949</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:744" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>Mozilla.MOZ-COM</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:743" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>Mozilla.MOZ-COM</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:726" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_34543</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:725" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>WUFTP-26.INETSVCS-FTP</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:755" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>Secure_Shell.SECURE_SHELL</swlist>
    </swlist_object>
    <package_object id="oval:org.mitre.oval:obj:713" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWlzas</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:712" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121332</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:710" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_33219</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:707" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.CORE-ENG-A-MAN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:706" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.UX-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:705" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_33989</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:698" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_23950</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:810" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:809" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INET-ENG-A-MAN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:697" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">111314</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:696" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">116808</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:695" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121308</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:694" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121309</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:693" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_30402</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:690" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>CIFS-Server.CIFS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:689" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>CIFS-Server.CIFS-UTIL</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:688" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>CIFS-Server.CIFS-ADMIN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:687" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>CIFS-Server.CIFS-LIB</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:686" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34102</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:683" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109023</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:682" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120240</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:681" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109024</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:680" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120239</base>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:678" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:677" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INET-ENG-A-MAN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:676" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_23948</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:716" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>IPSec.IPSEC2-KRN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:715" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>IPSec.IPSEC2-KRN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:714" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>TOUR_PRODUCT.T-NET2-KRN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:656" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">111571</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:654" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">115880</base>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:653" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>Secure_Shell.SECURE_SHELL</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:756" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>Secure_Shell.SECURE_SHELL</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:645" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.CORE-ENG-A-MAN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:644" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.UX-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:643" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_33967</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:642" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INET-ENG-A-MAN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:641" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33792</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:1404" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS2-RUN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:638" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120329</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:637" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">120330</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:636" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path>/etc</path>
      <filename>pam.conf</filename>
      <line operation="pattern match">^other.*krb5.*</line>
    </textfilecontent_object>
    <swlist_object id="oval:org.mitre.oval:obj:635" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>SysMgmtServer.MX-PORTAL</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:634" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>SysMgmtServer.MX-PORTAL</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:632" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_32280</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:891" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:890" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INET-ENG-A-MAN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:889" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>VirtualVaultOS.VVOS-AUX-IA</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:623" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33159</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:611" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">117350</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:610" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118558</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:609" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118822</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:608" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">117351</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:605" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109764</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:604" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">116047</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:603" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">119596</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:602" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109765</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:601" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121995</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:600" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118813</base>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:599" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS2-RUN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:598" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_29462</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:811" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>WUFTP-26.INETSVCS-FTP</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:711" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.UX-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:595" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_33214</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:594" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_33215</patch_name>
    </patch_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:587" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>sendmail</name>
    </rpminfo_object>
    <swlist_object id="oval:org.mitre.oval:obj:586" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>OS-Core.UX2-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:585" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_32149</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:584" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_32926</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:581" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118966</base>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:759" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>VaultWS.WS-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:758" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34123</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:666" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>HP_Webproxy.HPWEB-PX-CORE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:665" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34163</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:569" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_34545</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:727" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:568" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_34544</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:567" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>WUFTP-26.INETSVCS-FTP</swlist>
    </swlist_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:621" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path>/usr/share/gnome/gnome-about</path>
      <filename>gnome-version.xml</filename>
      <line operation="pattern match">\s*&lt;description>2\.0\.0.*&lt;/description>\s*</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:620" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">114644</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:619" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">114645</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:618" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">114686</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:617" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path>/usr/share/gnome/gnome-about</path>
      <filename>gnome-version.xml</filename>
      <line operation="pattern match">\s*&lt;description>2\.0\.2.*&lt;/description>\s*</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:616" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">115738</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:615" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">114687</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:614" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">115739</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:613" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path>/usr/share/gnome-about</path>
      <filename>gnome-version.xml</filename>
      <line operation="pattern match">\s*&lt;distributor-version>Sun Java Desktop System, Release 2&lt;/distributor-version>\s*</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:612" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121092</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:552" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">115677</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:551" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121321</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:550" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">108994</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:549" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">115678</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:548" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121322</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:520" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc/krb5</path>
      <filename>krb5.conf</filename>
      <line operation="pattern match">^[^#]auth_to_local.*</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:515" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112300</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:514" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112085</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:449" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWkrbr</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:448" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="pattern match" datatype="string">SUNWkrbux?</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:447" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112237</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:446" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112390</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:445" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112925</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:444" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112923</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:443" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112921</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:325" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108574</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:324" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108162</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:323" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108416</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:321" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110898</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1732" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108541</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:296" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112536</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:295" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110057</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:294" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110060</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:293" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116462</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:828" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWkr5sv</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:286" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108451</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:285" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">113319</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:284" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">11233</base>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:1431" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>X11.X11-RUN-CL</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:1430" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_32109</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1429" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_30791</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1428" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_33589</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1427" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_31833</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1426" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_32366</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:1412" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>CIFS-Server.CIFS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1411" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>CIFS-Server.CIFS-UTIL</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1410" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>CIFS-Server.CIFS-ADMIN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1409" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>CIFS-Server.CIFS-LIB</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:1376" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">112234</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1375" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">117172</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:607" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118559</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:606" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118844</base>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:1359" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1358" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INET-ENG-A-MAN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:1357" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_33790</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:1356" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1355" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INET-ENG-A-MAN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1354" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INETSVCS-RUN</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1353" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>InternetSrvcs.INET-ENG-A-MAN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:1352" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_23947</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1344" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_29269</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1343" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_30275</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1342" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHCO_32181</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1341" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHSS_34169</patch_name>
    </patch_object>
    <swlist_object id="oval:org.mitre.oval:obj:1365" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>hpuxwsAPACHE</swlist>
    </swlist_object>
    <swlist_object id="oval:org.mitre.oval:obj:1364" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>hpuxwsAPACHE</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:320" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109324</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1021" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118535</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1020" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121004</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1019" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109325</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1018" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">118536</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1017" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">121005</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1786" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/usr/lib/dmi</path>
      <filename>dmispd</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1785" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108827</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1784" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108901</base>
    </patch_object>
    <inetd_object id="oval:org.mitre.oval:obj:1783" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/dt/bin/rpc.cmsd</service_name>
    </inetd_object>
    <file_object id="oval:org.mitre.oval:obj:1781" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/dt/bin</path>
      <filename>rpc.cmsd</filename>
    </file_object>
    <process_object id="oval:org.mitre.oval:obj:1780" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*dmispd.*</command>
    </process_object>
    <swlist_object id="oval:org.mitre.oval:obj:984" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swlist>Networking.NET2-KRN</swlist>
    </swlist_object>
    <patch_object id="oval:org.mitre.oval:obj:983" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <patch_name>PHNE_32606</patch_name>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1684" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">111590</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:869" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWsasnm</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:818" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWbnuu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:817" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">106952</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:657" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">111570</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:655" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">113322</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1778" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/usr/lib/snmp</path>
      <filename>snmpdx</filename>
    </file_object>
    <process_object id="oval:org.mitre.oval:obj:1777" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*snmpdx.*</command>
    </process_object>
    <file_object id="oval:org.mitre.oval:obj:1779" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/openwin/bin</path>
      <filename>xlock</filename>
    </file_object>
    <package_object id="oval:org.mitre.oval:obj:685" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWsmbau</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:674" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWwbmc</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:673" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">111313</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:672" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">116807</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:671" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">.*smcboot</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:1647" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">109862</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1648" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/usr/openwin/lib</path>
      <filename>fs.auto</filename>
    </file_object>
    <file_object id="oval:org.mitre.oval:obj:1645" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/openwin/bin</path>
      <filename>xfs</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1642" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108117</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:322" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110943</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:597" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWgzip</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:596" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112668</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:580" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWstm</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:579" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">117367</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1632" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107654</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:547" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWnisu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:546" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110322</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:545" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*ypbind.*</command>
    </process_object>
    <package_object id="oval:org.mitre.oval:obj:543" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWdtdmn</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:542" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108221</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:538" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107702</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:537" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">109354</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:536" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">114497</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1620" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110286</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1672" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/openwin/bin</path>
      <filename>kcms_server</filename>
    </file_object>
    <package_object id="oval:org.mitre.oval:obj:530" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWftpu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:529" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">114564</base>
    </patch_object>
    <inetd_object id="oval:org.mitre.oval:obj:528" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/sbin/in.ftpd</service_name>
    </inetd_object>
    <package_object id="oval:org.mitre.oval:obj:519" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="pattern match" datatype="string">SUNWcsx?u</pkginst>
    </package_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:511" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc</path>
      <filename>pam.conf</filename>
      <line operation="pattern match">[^#]*pam_krb5.*debug</line>
    </textfilecontent_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:510" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc</path>
      <filename>syslog.conf</filename>
      <line operation="pattern match">^[^#]*(\*|daemon)\.debug</line>
    </textfilecontent_object>
    <process_object id="oval:org.mitre.oval:obj:684" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*smbd.*</command>
    </process_object>
    <package_object id="oval:org.mitre.oval:obj:507" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUWNsmbar</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:506" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">114684</base>
    </patch_object>
    <inetd_object id="oval:org.mitre.oval:obj:505" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="pattern match">^.*smbd.*</service_name>
    </inetd_object>
    <patch_object id="oval:org.mitre.oval:obj:487" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108748</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:486" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108750</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:485" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108752</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:484" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">106942</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:483" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107477</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:482" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108551</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:481" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108754</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:480" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108756</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:479" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108758</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:478" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108760</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:477" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108762</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:476" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108764</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:475" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">.*rpcbind.*</command>
    </process_object>
    <package_object id="oval:org.mitre.oval:obj:462" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWypu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:461" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">109328</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:460" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">113579</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:459" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*ypxfrd.*</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:458" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="not equal">109007</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:675" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWnsb</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:433" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="pattern match" datatype="string">SUNWkcsr[tx]</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:432" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">114636</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:430" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">111400</base>
    </patch_object>
    <inetd_object id="oval:org.mitre.oval:obj:1673" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/openwin/bin/kcms_server</service_name>
    </inetd_object>
    <patch_object id="oval:org.mitre.oval:obj:429" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">114796</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:428" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWkcl2r</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:831" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="pattern match" datatype="string">SUNWtltkx?</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:830" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112808</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:412" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWxwfs</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:411" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">113923</base>
    </patch_object>
    <inetd_object id="oval:org.mitre.oval:obj:1646" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/openwin/lib/fs.auto</service_name>
    </inetd_object>
    <patch_object id="oval:org.mitre.oval:obj:401" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116895</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:400" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">117000</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:489" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWsndmu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:395" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108219</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1764" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/openwin/bin</path>
      <filename>Xsun</filename>
    </file_object>
    <package_object id="oval:org.mitre.oval:obj:383" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWbip</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:382" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">118313</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:381" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116986</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:380" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116774</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:415" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*sshd.*</command>
    </process_object>
    <package_object id="oval:org.mitre.oval:obj:368" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWsshdu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:367" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">113273</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:366" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc/ssh</path>
      <filename>sshd_config</filename>
      <line operation="pattern match">^[^#]*ListenAddress.*0\.0\.0\.0</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:361" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">114332</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:360" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc</path>
      <filename>system</filename>
      <line operation="pattern match">^[^\*]*set.*c2audit.*</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:354" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">106950</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:353" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">109147</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:352" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112963</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:502" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWsndmr</pkginst>
    </package_object>
    <process_object id="oval:org.mitre.oval:obj:488" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">.*sendmail .*</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:399" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">113575</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:351" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107684</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:350" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110615</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:343" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWntpu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:342" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">109409</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:341" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">109667</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:340" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="equals" datatype="string">/usr/lib/inet/xntpd</command>
    </process_object>
    <file_object id="oval:org.mitre.oval:obj:338" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/etc</path>
      <filename>named.conf</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:333" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">109613</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:332" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112810</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:331" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWdtdst</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:319" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWpcr</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:318" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWpcu</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:317" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWpsr</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:316" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWpsu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:315" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">109320</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:314" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">113329</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1735" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112899</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:313" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">106938</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:312" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">109326</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:310" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc</path>
      <filename>nsswitch.conf</filename>
      <line operation="pattern match">^[^#]*hosts:.*dns</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:1731" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108800</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:539" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst>SUNWdtwm</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:575" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWpcu</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:300" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107115</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:1497" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWinamd</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:311" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112970</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:1496" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="equals" datatype="string">/usr/sbin/in.named</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:291" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">106541</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:290" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108528</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:289" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112233</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:439" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">113505</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:438" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">113508</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:437" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">115054</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:436" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">115055</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:435" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWscvw</pkginst>
    </package_object>
    <process_object id="oval:org.mitre.oval:obj:434" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^/usr/apache/bin/httpd.*SUNWscvw/conf/httpd.conf.*</command>
    </process_object>
    <process_object id="oval:org.mitre.oval:obj:288" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">.*krb5kdc.*</command>
    </process_object>
    <package_object id="oval:org.mitre.oval:obj:784" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWmoznav</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:783" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWmozmail</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:782" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">117765</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:781" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">117767</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:275" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">108993</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:274" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112960</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:273" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc</path>
      <filename>nsswitch.conf</filename>
      <line operation="pattern match">^[^#].*_attr.*ldap</line>
    </textfilecontent_object>
    <patch_object id="oval:org.mitre.oval:obj:217" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">116973</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:215" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">113146</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:526" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match">.*httpd</command>
    </process_object>
    <package_object id="oval:org.mitre.oval:obj:525" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWapchu</pkginst>
    </package_object>
    <file_object id="oval:org.mitre.oval:obj:521" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/etc/krb5</path>
      <filename>krb5.conf</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:442" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112908</base>
    </patch_object>
    <textfilecontent_object id="oval:org.mitre.oval:obj:824" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path operation="equals">/etc/krb5</path>
      <filename>krb5.conf</filename>
      <line operation="pattern match">^[^#_]*default_realm[^=]*=[^_]*$</line>
    </textfilecontent_object>
    <package_object id="oval:org.mitre.oval:obj:396" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="pattern match" datatype="string">SUNWdtba[sx]</pkginst>
    </package_object>
    <package_object id="oval:org.mitre.oval:obj:258" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWdthep</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:257" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107178</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:256" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108949</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:255" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116308</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1460" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108376</base>
    </patch_object>
    <package_object id="oval:org.mitre.oval:obj:1459" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWxwplt</pkginst>
    </package_object>
    <file_object id="oval:org.mitre.oval:obj:1721" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/usr/lib/netsvc</path>
      <filename>rpc.yppasswdd</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1720" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">111596</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:1719" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*rpc\.yppasswdd.*</command>
    </process_object>
    <package_object id="oval:org.mitre.oval:obj:1441" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <pkginst operation="equals" datatype="string">SUNWrcmds</pkginst>
    </package_object>
    <patch_object id="oval:org.mitre.oval:obj:1440" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">118239</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1439" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">116984</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:1438" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">117455</base>
    </patch_object>
    <process_object id="oval:org.mitre.oval:obj:1437" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="equals" datatype="string">/usr/sbin/in.rwhod</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:868" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107709</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:431" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107337</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1787" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/openwin/bin</path>
      <filename>kcms_configure</filename>
    </file_object>
    <inetd_object id="oval:org.mitre.oval:obj:1734" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/lib/netsvc/rwall/rpc.rwalld</service_name>
    </inetd_object>
    <file_object id="oval:org.mitre.oval:obj:1733" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/lib/netsvc/rwall</path>
      <filename>rpc.rwalld</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1699" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">112846</base>
    </patch_object>
    <patch_object id="oval:org.mitre.oval:obj:876" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int">108652</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1696" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/openwin/bin</path>
      <filename>lbxproxy</filename>
    </file_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1039" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kernel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1038" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>net-snmp</name>
    </rpminfo_object>
    <inetlisteningservers_object id="oval:org.mitre.oval:obj:1037" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <protocol operation="pattern match">.*</protocol>
      <local_address operation="pattern match">.*</local_address>
      <local_port operation="pattern match">.*</local_port>
    </inetlisteningservers_object>
    <inetd_object id="oval:org.mitre.oval:obj:1763" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/dt/bin/rpc.ttdbserverd</service_name>
    </inetd_object>
    <file_object id="oval:org.mitre.oval:obj:1762" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/dt/bin</path>
      <filename>rpc.ttdbserverd</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:301" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">107893</base>
    </patch_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1036" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1035" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1034" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl-perl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1033" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl096b</name>
    </rpminfo_object>
    <patch_object id="oval:org.mitre.oval:obj:867" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">108869</base>
    </patch_object>
    <file_object id="oval:org.mitre.oval:obj:1713" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path operation="equals">/usr/lib/snmp</path>
      <filename>mibiisa</filename>
    </file_object>
    <process_object id="oval:org.mitre.oval:obj:1712" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*mibiisa.*</command>
    </process_object>
    <process_object id="oval:org.mitre.oval:obj:1782" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <command operation="pattern match" datatype="string">^.*inetd.*</command>
    </process_object>
    <patch_object id="oval:org.mitre.oval:obj:1745" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">114008</base>
    </patch_object>
    <inetd_object id="oval:org.mitre.oval:obj:1744" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <protocol operation="pattern match">.*</protocol>
      <service_name operation="equals">/usr/lib/fs/cachefs/cachefsd</service_name>
    </inetd_object>
    <file_object id="oval:org.mitre.oval:obj:1743" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <path>/usr/lib/fs/cachefs</path>
      <filename>cachefsd</filename>
    </file_object>
    <patch_object id="oval:org.mitre.oval:obj:1686" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <base datatype="int" operation="equals">110896</base>
    </patch_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1414" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>redhat-release</name>
    </rpminfo_object>
    <uname_object id="oval:org.mitre.oval:obj:679" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix"/>
    <rpminfo_object id="oval:org.mitre.oval:obj:1007" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1006" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl-devel</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1005" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl-perl</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1004" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl096</name>
    </rpminfo_object>
    <rpminfo_object id="oval:org.mitre.oval:obj:1003" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl096b</name>
    </rpminfo_object>
  </objects>
  <states>
    <patch_state id="oval:org.mitre.oval:ste:456" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:455" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:454" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2849" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">1</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:393" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">13</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:2848" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid datatype="boolean">true</suid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2847" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:2826" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">1</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2308" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">17</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2306" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">17</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2305" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">16</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2304" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">17</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2302" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2301" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2800" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">1</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:2825" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid operation="equals" datatype="boolean">true</suid>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:2799" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">2</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:1292" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1291" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid operation="equals" datatype="boolean">true</suid>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:929" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:2.2.2-4.rhel3</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:928" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <inetd_state id="oval:org.mitre.oval:ste:913" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/sbin/sadmind</server_program>
    </inetd_state>
    <patch_state id="oval:org.mitre.oval:ste:912" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:911" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:910" version="2" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <inetd_state id="oval:org.mitre.oval:ste:909" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/sbin/sadmind</server_program>
    </inetd_state>
    <patch_state id="oval:org.mitre.oval:ste:841" version="2" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">21</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:840" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:839" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">31</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2796" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">7</version>
    </patch_state>
    <inetd_state id="oval:org.mitre.oval:ste:2795" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/dt/bin/dtspcd</server_program>
    </inetd_state>
    <file_state id="oval:org.mitre.oval:ste:2794" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2793" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2792" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:2788" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">4</version>
    </patch_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1404" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-4.0.2.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1403" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-4.0.2.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1402" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-4.0.2.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1191" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.4.3-0.e3.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1181" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-15.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1132" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:6.2.0-3.el3.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1125" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.11.2-18</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1095" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.1.0-15.EL</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1094" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1093" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1092" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1091" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1090" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1089" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1088" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1087" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1086" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1085" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1084" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1083" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1082" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1081" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1080" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1056" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1053" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:7.3.10-1</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1037" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2754" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.2.2-5</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1131" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1024" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:6.2.5-6.el4.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1012" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:0.17-20.EL3.3</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1011" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:984" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:1.8.17-9.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:983" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:1.8.17-9.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1028" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-32.0.1.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1027" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-32.0.1.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1026" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-32.0.1.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:932" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.6.7p5-1.1</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:931" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:967" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.8.4-12.3.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:966" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.8.4-12.3.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2751" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:2.4.1.3-5.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2727" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:7.05-32.1</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2726" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2725" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2724" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:873" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.1-1</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:872" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">.*/radiusd</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2717" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.2.1-4</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2716" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2715" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2713" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.1.9-0.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2693" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.1.9-0.9.1</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2692" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2691" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2690" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2684" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.0.40-21.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2678" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-33.15</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2677" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-33.15</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2676" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-33.15</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2675" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.6b-16.22.3</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2683" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*httpd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2670" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.0.40-21.5</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2947" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.0.6-2</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2946" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2945" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2944" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2646" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">6:3.1-15</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2645" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2644" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2643" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2606" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.2.7-14</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2577" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.2.7-14</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2576" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.2.7-14</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2574" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <release operation="equals">6</release>
      <version operation="equals">2.4.20</version>
    </rpminfo_state>
    <uname_state id="oval:org.mitre.oval:ste:2573" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release operation="equals">2.4.20-6</os_release>
    </uname_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2866" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:11.6.0-11.90</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2865" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:11.6.0-11.90</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2542" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-18.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:440" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-15.0.2.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:439" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-15.0.2.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:438" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-15.0.2.EL</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2674" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2509" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:4.3.2-24.ent</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2506" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.5-4.RHEL3</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2505" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:364" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">2:1.2.2-24</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:363" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">2:1.2.2-24</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:362" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.13-14</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:361" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.13-14</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2491" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.3.3-12.rhel3</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2490" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2489" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2563" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-13.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2530" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-19.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2481" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">6:3.1-12</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2473" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.8.19-3.1</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2472" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2471" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*lpd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2466" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:4.49.4-9.9.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2465" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">5:1.4.1-1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2461" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.23.56-1.9</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2460" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*mysqld.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2458" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.1-3.9</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2457" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*rpc\.mountd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2456" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.5p1-6.9</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2455" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*sshd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2454" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.5p1-11</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2447" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-5</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2446" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-5</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2445" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-5</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2444" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.6-17</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2443" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.6b-6</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2437" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.1.6-9.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2436" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">2:2.81-88.3</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2425" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:4.2.2-17.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2420" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:4.44-19.90.0</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2419" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2418" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2417" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2820" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.2.0-2</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2819" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2818" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2817" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2411" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">2:1.1.12-1</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2410" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*smtpd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2816" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.11-0.90.1</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2398" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*smbd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2399" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.2.7a-7.9.0</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2393" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.2.7a-8.9.0</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2391" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.10.1-1.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2390" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.10.1-1.1</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2389" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2388" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2387" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2386" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2385" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2384" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2383" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:8.12.8-5.90</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2357" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:8.12.8-6.90</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2356" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*sendmail.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2943" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.1.17-13.3</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2942" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*cupsd.*</program_name>
    </inetlisteningservers_state>
    <file_state id="oval:org.mitre.oval:ste:2382" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid operation="equals" datatype="boolean">true</suid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2381" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2380" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2379" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <sgid operation="equals" datatype="boolean">true</sgid>
    </file_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2378" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*sendmail.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2358" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:8.12.8-9.90</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2340" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.2.11-1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2339" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:5.50-33</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2338" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2337" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2336" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2335" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.3.7.2-6</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2334" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <owrite operation="equals" datatype="boolean">true</owrite>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2331" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.1.23.1-5</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2330" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.1.3-8</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2329" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*vsftpd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2318" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.1.6-22.EL3</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2317" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2311" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">2:2.3.11-1.9.0</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2310" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*xinetd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2300" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:2.0.1-11</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2299" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2298" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2297" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2296" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.8-0.9E</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2295" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*ypserv.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2279" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:7.3.10-1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2249" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:5.5.6-14</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2242" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:2.0.14-4</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2241" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2561" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:1.3.1-0.el3</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2560" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2235" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.2-11.EL3.4</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2234" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2173" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.4.7-4.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2171" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:9.24-10.90.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2170" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:9.24-10.90.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2169" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:9.24-10.90.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2477" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <version operation="pattern match">^.*4.S</version>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2476" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">37:1.7.10-1.4.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1493" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:4.3.0-2.90.55</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2168" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2167" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2166" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2165" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2164" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2163" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2162" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2161" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2160" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2159" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2158" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2157" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2156" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2155" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2154" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2153" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2152" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2151" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2150" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2149" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2148" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2147" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2146" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2145" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2144" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2143" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2142" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2141" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2140" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2139" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2138" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2137" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2136" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2135" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2134" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2133" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2132" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2131" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2130" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2129" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2128" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2127" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2126" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2125" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2124" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2123" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2122" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2121" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2120" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2119" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2118" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2117" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2116" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2115" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2114" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2113" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2112" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2111" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2110" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2109" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2108" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2107" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2106" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2105" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2104" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2103" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2102" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2101" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2100" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2099" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2098" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2097" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2096" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2095" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2094" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2093" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2092" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2091" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2090" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2089" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2088" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2087" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2086" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2085" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2084" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2083" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2082" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2081" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2080" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2079" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2078" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2077" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2076" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2075" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2074" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2073" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2072" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2071" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2070" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2069" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2068" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2067" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2066" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2065" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2064" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2063" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2062" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2061" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2060" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2059" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2058" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2057" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2056" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2055" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2054" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2053" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2052" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2051" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2050" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2049" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2048" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2047" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2046" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2045" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2044" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2043" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2042" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2041" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2040" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2039" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2038" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2037" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2036" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2035" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2034" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2033" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2032" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2031" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2030" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2029" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2028" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2027" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2026" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2025" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2024" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2023" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2022" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2021" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2020" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2019" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2018" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2017" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2016" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2015" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2014" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2013" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2012" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2011" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2010" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2009" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2008" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2007" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2006" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2005" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2004" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2003" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2002" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2001" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2000" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1999" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1998" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1997" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1996" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1995" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1994" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1993" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1992" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1991" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1990" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1989" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1988" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1987" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1986" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1985" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1984" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1983" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1982" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1981" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1980" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1979" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1978" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1977" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1976" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1975" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1974" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1973" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1972" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1971" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1970" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1969" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1968" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1967" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1966" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1965" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1964" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1963" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1962" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1961" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1960" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1959" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1958" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1957" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1956" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1955" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1954" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1953" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1952" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1951" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1950" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1949" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1948" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1947" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1946" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1945" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1944" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1943" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1942" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1941" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1940" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1939" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1938" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1937" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1936" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1935" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1934" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1933" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1932" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1931" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1930" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1929" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1928" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1927" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1926" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1925" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1924" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1923" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1922" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1921" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1920" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1919" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1918" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1917" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1916" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1915" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1914" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1913" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1912" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1911" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1910" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1909" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1908" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1907" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1906" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1905" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1904" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1903" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1902" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1901" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1900" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1899" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1898" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1897" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1896" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1895" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1894" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1893" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1892" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1891" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1890" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1889" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1888" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1887" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1886" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1885" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1884" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1883" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1882" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1881" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1880" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1879" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1878" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1877" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1876" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1875" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1874" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1873" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1872" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1871" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1870" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1869" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1868" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1867" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1866" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1865" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1864" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1863" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1862" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1861" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1860" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1859" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1858" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1857" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1856" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1855" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1854" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1853" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1852" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1851" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1850" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1849" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1848" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1847" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1846" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1845" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1844" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1843" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1842" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1841" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1840" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1839" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1838" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1837" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1836" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1835" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1834" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1833" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1832" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1831" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1830" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1829" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1828" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1827" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1826" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1825" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1824" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1823" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1822" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1821" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1820" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1819" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1818" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1817" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1816" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1815" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1814" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1813" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1812" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1811" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1810" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1809" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1808" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1807" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1806" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1805" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1804" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1803" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1802" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1801" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1800" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1799" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1798" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1797" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1796" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1795" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1794" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1793" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1792" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1791" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1790" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1789" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1788" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1787" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1786" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1785" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1784" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1783" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1782" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1781" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1780" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1779" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1778" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1777" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1776" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1775" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1774" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1773" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1772" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1771" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1770" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1769" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1768" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1767" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1766" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1765" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1764" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1763" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1762" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1761" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1760" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1759" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1758" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1757" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1756" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1755" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1754" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1753" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1752" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1751" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1750" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1749" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1748" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1747" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1746" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1745" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1744" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1743" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1742" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1741" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1740" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1739" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1738" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1737" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1736" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1735" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1734" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1733" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1732" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1731" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1730" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1729" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1728" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1727" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1726" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1725" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1724" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1723" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1722" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1721" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1720" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1719" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1718" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1717" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1716" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1715" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1714" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1713" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1712" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1711" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1710" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1709" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1708" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1707" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1706" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1705" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1704" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1703" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1702" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1701" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1700" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1699" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1698" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1697" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1696" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1695" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1694" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1693" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1692" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1691" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1690" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1689" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1688" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1687" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1686" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1685" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1684" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1683" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1682" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1681" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1680" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1679" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1678" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1677" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1676" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1675" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1674" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1673" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1672" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1671" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1670" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1669" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1668" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1667" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1666" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1665" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1664" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1663" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1662" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1661" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1660" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1659" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1658" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1657" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1656" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1655" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1654" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1653" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1652" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1651" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1650" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1649" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1648" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1647" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1646" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1645" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1644" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1643" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1642" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1641" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1640" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1639" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1638" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1637" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1636" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1635" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1634" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1633" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1632" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1631" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1630" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1629" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1628" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1627" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1626" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1625" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1624" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1623" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1622" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1621" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1620" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1619" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1618" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1617" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1616" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1615" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1614" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1613" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1612" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1611" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1610" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1609" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1608" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1607" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1606" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1605" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1604" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1603" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1602" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1601" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1600" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1599" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1598" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1597" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1596" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1595" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1594" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1593" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1592" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1591" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1590" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1589" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1588" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1587" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1586" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1585" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1584" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1583" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1582" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1581" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1580" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1579" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1578" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1577" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1576" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1575" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1574" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1573" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1572" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1571" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1570" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1569" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1568" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1567" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1566" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1565" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1564" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1563" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1562" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1561" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1560" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1559" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1558" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1557" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1556" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1555" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1554" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1553" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1552" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1551" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1550" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1549" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1548" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1547" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1546" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1545" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1544" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1543" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1542" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1541" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1540" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1539" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1538" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1537" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1536" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1535" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1534" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1533" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1532" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1531" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1530" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1529" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1528" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1527" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1526" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1525" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1524" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1523" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1522" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1521" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1520" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1519" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1518" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1517" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1516" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1515" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1514" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1513" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1512" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1511" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1510" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1509" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1508" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1507" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1506" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1505" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1504" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1503" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1502" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1501" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1500" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1499" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1498" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1497" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1496" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1495" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1494" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1489" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:9.24-11.30.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1488" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:9.24-11.30.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1487" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:9.24-11.30.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1486" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">5:1.4.1-3.3</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1483" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">3:2.1.1-5</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:1482" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*httpd.*</program_name>
    </inetlisteningservers_state>
    <file_state id="oval:org.mitre.oval:ste:2475" version="1" operator="OR" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
      <gexec operation="equals" datatype="boolean">true</gexec>
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2326" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">37:1.7.10-1.1.3.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1481" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:0.75-0.9.0</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1480" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1479" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1478" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1477" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.7-2</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1476" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <sgid operation="equals" datatype="boolean">true</sgid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1475" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1474" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:4.6.0-7.9</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1473" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1472" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1471" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2480" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2479" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2478" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1470" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">6:3.1-13</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1469" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-9.0.1.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1468" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-9.0.1.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1467" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-9.0.1.EL</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2172" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1466" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.4.7-7.EL</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2392" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*smbd.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1465" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.0.2-6.3E</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1492" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid operation="equals" datatype="boolean">true</suid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1491" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1490" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1462" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:4.3.0-55.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1458" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-30.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1457" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-30.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1456" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-30.9</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:2464" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2463" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2462" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1455" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">5:1.4.1-3.4</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1464" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.0.1-4</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1443" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:0.22.0-6.0.3</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1442" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:0.22.0-6.0.3</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1441" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:0.22.0-6.0.3</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1440" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:0.22.0-6.1.0</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1439" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:0.22.0-6.1.0</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1438" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">1:0.22.0-6.1.0</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1433" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:4.0.7-4.rhl9.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1437" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">14:3.7.2-7.9.1</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1436" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1435" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1434" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1432" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">14:3.7.2-7.E3.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1431" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.11.2-13</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1429" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.10.0a-0.90.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1428" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.10.0a-0.90.1</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1427" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1426" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1425" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1424" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1423" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1422" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1421" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1420" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1419" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1418" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">6:3.1-6</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1414" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-28.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1413" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-28.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1412" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.20-28.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1411" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.6-7.EL</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:1410" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*rpc\.mountd</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1409" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:4.0.7-4.EL3.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1408" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.0.40-21.9</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:2669" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*httpd\.worker.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1407" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.0.46-26.ent</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1417" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uread operation="equals" datatype="boolean">true</uread>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1416" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1415" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1406" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">6:3.1.3-3.3</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1430" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <owrite operation="equals" datatype="boolean">true</owrite>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1405" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.11.2-14</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1393" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">37:1.4.2-0.9.0</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1392" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">37:1.4.2-0.9.0</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1391" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1390" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1389" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1461" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.5.10-6</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1460" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.5.10-6</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1459" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.5.10-6</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:1463" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*httpd</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1388" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.0.46-32.ent</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1387" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">7:2.5STABLE1-3.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2798" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.13-1.90.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2797" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.13-1.90.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1385" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.10.3-0.90.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1384" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.10.3-0.90.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1360" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.10.3-0.30E.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1359" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.10.3-0.30E.1</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1326" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">37:1.4.2-3.0.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1295" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-9.0.3.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1294" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-9.0.3.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1293" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-9.0.3.EL</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:1386" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*squid.*</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1290" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">7:2.5.STABLE3-5.3E</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1285" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">6:3.1.3-6.4</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1284" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1283" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1282" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1281" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1280" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1279" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1278" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1277" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1276" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1275" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1274" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1273" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1272" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1271" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1270" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1269" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1268" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1267" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1259" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:5.5.6-15</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1251" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.5.7-4.3E</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1244" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.11.2-22</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1240" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">2:1.2.2-21</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1239" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">2:1.2.2-21</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1238" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.13-12</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1237" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.13-12</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2327" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <version operation="pattern match">^.*3.S</version>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1236" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">14:3.7.2-7.E3.2</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1235" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1234" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1233" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1232" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.14i-10.2</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1231" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1230" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1229" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1228" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.5.5-1.3EL.0</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1227" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <sgid operation="equals" datatype="boolean">true</sgid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1226" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1225" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1224" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1223" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">7:2.5.STABLE3-6.3E</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:1222" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*squid</program_name>
    </inetlisteningservers_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1289" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.2.5-0.4</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:1288" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*racoon</program_name>
    </inetlisteningservers_state>
    <file_state id="oval:org.mitre.oval:ste:1383" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1382" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1381" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1380" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1379" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1378" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1377" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1376" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1375" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1221" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.10.3-0.30E.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1220" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.10.3-0.30E.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1213" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.2.7-24</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1243" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1242" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1241" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1209" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.11.2-24</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1204" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-15.EL</evr>
    </rpminfo_state>
    <file_state id="oval:org.mitre.oval:ste:1203" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oread operation="equals" datatype="boolean">true</oread>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1202" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1201" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:1200" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <uname_state id="oval:org.mitre.oval:ste:3839" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.10</os_release>
    </uname_state>
    <isainfo_state id="oval:org.mitre.oval:ste:3528" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <bits>64</bits>
    </isainfo_state>
    <uname_state id="oval:org.mitre.oval:ste:3040" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <processor_type operation="pattern match">^i.*86</processor_type>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:3384" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">14</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3737" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">28847</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3919" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">29963</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3645" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">14</version>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:3011" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.11</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:3226" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.11</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:3819" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base>23263</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3712" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33159</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3777" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">12</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3539" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3535" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">13</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3220" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3374" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3922" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3724" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3291" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3169" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">30302</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3779" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">30006</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:3311" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.00</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:3127" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.00</version>
    </swlist_state>
    <uname_state id="oval:org.mitre.oval:ste:3695" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.10</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:3260" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base>23262</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:3442" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.10</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:3683" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.10</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:3473" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3005" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">34077</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:3434" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.04</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:3549" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33412</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:3743" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.11</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:3077" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">B\.11\.00\.(00.*|01\.00[0-4])</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:3599" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.23</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:3294" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33414</patch_base>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:3450" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.10.10</os_release>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:3946" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.10.20</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:3110" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base>23261</patch_base>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:3134" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.10.01</os_release>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:3213" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.10.30</os_release>
    </uname_state>
    <swlist_state id="oval:org.mitre.oval:ste:3359" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">B\.11\.11\.(00.*|01\.00[0-5])</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:3612" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">29964</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3793" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">28848</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2997" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">27</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3089" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">28</version>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:3929" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A\.0[12]\..*</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:3930" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">32606</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3131" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3692" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3372" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">15</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3437" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3614" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3009" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3847" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2964" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">11</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3269" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33395</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:3557" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">D\.5\.8\.0\.[ABCDEF]</version>
    </swlist_state>
    <uname_state id="oval:org.mitre.oval:ste:3324" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.23</os_release>
    </uname_state>
    <swlist_state id="oval:org.mitre.oval:ste:3790" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>D.5.8.3.A</version>
    </swlist_state>
    <uname_state id="oval:org.mitre.oval:ste:3389" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.11</os_release>
    </uname_state>
    <swlist_state id="oval:org.mitre.oval:ste:3165" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">D\.5\.8\.2\.[ABCDE]</version>
    </swlist_state>
    <uname_state id="oval:org.mitre.oval:ste:3813" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.00</os_release>
    </uname_state>
    <swlist_state id="oval:org.mitre.oval:ste:3647" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">D\.5\.6\..*</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:3104" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">D\.5\.8\.2\.[ABC]</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:2974" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">12</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3522" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">11</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3074" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3846" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">13</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3272" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2988" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2965" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">06</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3688" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3041" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">20</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3585" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">06</version>
    </patch_state>
    <package_state id="oval:org.mitre.oval:ste:3088" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="pattern match">7\.0,.*</version>
      <description operation="pattern match">7\.0,.*</description>
    </package_state>
    <patch_state id="oval:org.mitre.oval:ste:3553" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3850" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3228" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3562" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3405" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3667" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3869" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:3073" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <machine_class operation="pattern match">\d+/8\d+</machine_class>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:3608" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33427</patch_base>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:3773" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <machine_class operation="pattern match">\d+/7\d+</machine_class>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:3271" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.04</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:3193" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">50</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3924" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:3519" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid datatype="boolean">true</suid>
    </file_state>
    <uname_state id="oval:org.mitre.oval:ste:3443" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <processor_type operation="pattern match">^i.*86</processor_type>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:3597" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.10</os_release>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:3679" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.7</os_release>
    </uname_state>
    <file_state id="oval:org.mitre.oval:ste:3222" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid datatype="boolean">true</suid>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:3142" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:3700" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.8</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:3016" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">39</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3420" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">93</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:3126" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">82</version>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:3478" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <processor_type operation="pattern match">[Ss][Pp][Aa][Rr][Cc]</processor_type>
    </uname_state>
    <file_state id="oval:org.mitre.oval:ste:3943" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec datatype="boolean">true</oexec>
    </file_state>
    <uname_state id="oval:org.mitre.oval:ste:3891" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.9</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:1124" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">94</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1123" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">52</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1122" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1121" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">83</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1120" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">41</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1119" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:759" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">29249</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2315" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">30983</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2314" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">31732</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:1212" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.23</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:1211" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>KL</area_patched>
      <patch_base operation="greater than or equal">33713</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1210" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>KL</area_patched>
      <patch_base operation="greater than or equal">33714</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1199" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1198" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:215" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:214" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:213" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:212" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:211" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:210" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:209" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">38</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:208" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">27</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:207" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:206" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:205" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:204" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:203" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">11</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:202" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">11</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:201" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:200" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1144" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">24395</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1070" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1069" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1036" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1035" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1034" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">07</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1033" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">07</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:998" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33791</patch_base>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:959" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.10.24</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:958" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">24395</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:948" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.04.70</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:947" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.04.70</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:946" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34121</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:945" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.04.60</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:944" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34170</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:943" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.04.60</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:942" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34120</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:941" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.04.50</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:940" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34171</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:939" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.04.50</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:938" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34119</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:937" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.02.10</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:936" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34203</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:935" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.02.00</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:934" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34204</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:919" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">34306</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:908" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">23949</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:904" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">((1\.7\.12\..*)|(1\.(([8-9])|(\d{2,}))\..*)|(1\.7\.((1[3-9])|([2-9]\d+))\..*))</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:879" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">34543</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:878" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">B\.11\.11\.(00.*|01\.00[0-5])</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:921" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A(\.0[0-3]\..*|\.04\.[0-1].*|\.04\.20\.00[0-4])</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:863" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:862" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">33219</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:848" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.00</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:847" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.00</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:846" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">33989</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:838" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">23950</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:1000" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.11</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:999" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.11</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:837" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:836" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:835" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:834" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:833" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:832" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:828" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">30402</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:824" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A\.01\.(0.*|10.*|11[^\.]|11\.0[0-3])</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:823" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A\.01\.(0.*|10.*|11[^\.]|11\.0[0-3])</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:822" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A\.01\.(0.*|10.*|11[^\.]|11\.0[0-3])</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:821" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A\.01\.(0.*|10.*|11[^\.]|11\.0[0-3])</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:819" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34102</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:816" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:815" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:814" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:813" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">01</version>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:812" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.10.20</os_release>
    </uname_state>
    <swlist_state id="oval:org.mitre.oval:ste:811" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.10.20</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:810" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.10.20</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:809" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">23948</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:865" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A\.([01].*|2\.00\.00)</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:864" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A\.0[12]\..*</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:789" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:788" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:787" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:786" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:780" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">A(\.0[0-3]\..*|\.04\.[0-1].*|\.04\.20\.00[0-3])</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:764" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.11</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:763" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.11</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:762" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">33967</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:761" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.23</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:760" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33792</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:2316" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.23</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:757" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:756" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:754" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>C.04.00.00.00</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:753" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>C.04.01.00.00</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:750" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">32280</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:1148" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.04</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:1147" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.04</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:1146" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.04</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:738" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33159</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:737" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">24</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:726" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">33</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:725" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">22</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:724" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">29</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:723" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">33</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:722" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">22</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:721" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">29</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:719" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">06</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:718" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:717" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:716" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">06</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:715" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:714" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:713" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.22</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:712" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">29462</patch_base>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:905" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.22</os_release>
    </uname_state>
    <swlist_state id="oval:org.mitre.oval:ste:1005" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">B\.11\.00\.(00.*|01\.00[0-3])</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:707" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">33214</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:706" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">33215</patch_base>
    </patch_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:694" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <version operation="pattern match">([0-7]|8\.([0-9]|1[01]))</version>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:693" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <version operation="pattern match">8\.12\.([0-9]|10)</version>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:692" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <version operation="pattern match">8\.13\.[0-5]</version>
    </rpminfo_state>
    <patch_state id="oval:org.mitre.oval:ste:691" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">32149</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:690" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">32926</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:688" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">14</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:687" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">17</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:927" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34123</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:799" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34163</patch_base>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:1145" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.04</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:663" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base operation="greater than or equal">34545</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:662" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">34544</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:661" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">B\.11\.11\.(00.*|01\.00[0-7])</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:733" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:732" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:731" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:730" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:729" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:728" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:727" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:627" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">14</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:626" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">51</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:625" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:624" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:623" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">14</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:622" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">51</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:621" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:620" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:582" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">16</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:581" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:580" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">11</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:579" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:573" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:572" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:479" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:478" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:477" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:476" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:475" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:474" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:341" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:340" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:339" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:338" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:337" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:336" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2833" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">6</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:316" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:315" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">07</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:314" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:313" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:303" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">06</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:302" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:301" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2834" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">22</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2350" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base>32109</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2349" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base>30791</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2348" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base>33589</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2347" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base>31833</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2346" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base>32366</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:2325" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.02.01</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:2324" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.02.01</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:2323" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.02.01</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:2322" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>A.02.01</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:2261" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">11</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2260" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">12</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2259" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">16</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2258" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">19</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2257" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">24</version>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:2226" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.00</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:2225" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.11.00</version>
    </swlist_state>
    <patch_state id="oval:org.mitre.oval:ste:2224" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">33790</patch_base>
    </patch_state>
    <swlist_state id="oval:org.mitre.oval:ste:2223" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.10.01</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:2222" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.10.01</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:2221" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.10.10</version>
    </swlist_state>
    <swlist_state id="oval:org.mitre.oval:ste:2220" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version>B.10.10</version>
    </swlist_state>
    <uname_state id="oval:org.mitre.oval:ste:2219" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.10.01</os_release>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:2218" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.10.10</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:2217" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">23947</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2195" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base>29269</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2194" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base>30275</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2193" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>CO</area_patched>
      <patch_base>32181</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2192" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>SS</area_patched>
      <patch_base operation="greater than or equal">34169</patch_base>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:2354" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.11</os_release>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:2352" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.00</os_release>
    </uname_state>
    <swlist_state id="oval:org.mitre.oval:ste:2236" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <version operation="pattern match">(((A|B)\.2\.0\.55\.\d+)|((A|B)\.[3-9]\..*)|((A|B)\.[1-9]\d+\..*)|((A|B)\.2\.[1-9]\d*\..*)|((A|B)\.2\.\d+\.[6-9]\d+\..*)|((A|B)\.2\.\d+\.5[6-9]\d*\..*)|((A|B)\.2\.\d+\.\d{3,}\..*))</version>
    </swlist_state>
    <uname_state id="oval:org.mitre.oval:ste:2309" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <processor_type operation="pattern match">[Ss][Pp][Aa][Rr][Cc]</processor_type>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:2307" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <processor_type operation="pattern match">^i.*86</processor_type>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:2303" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.10</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:1374" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1373" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1372" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1371" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1370" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1369" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2937" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">30</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2936" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">6</version>
    </patch_state>
    <inetd_state id="oval:org.mitre.oval:ste:2935" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/dt/bin/rpc.cmsd</server_program>
    </inetd_state>
    <file_state id="oval:org.mitre.oval:ste:2933" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2932" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2931" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <uname_state id="oval:org.mitre.oval:ste:2355" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <machine_class operation="pattern match">\d+/7\d+</machine_class>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:2353" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <machine_class operation="pattern match">\d+/8\d+</machine_class>
    </uname_state>
    <uname_state id="oval:org.mitre.oval:ste:2351" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>B.11.23</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:1300" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#hpux">
      <swtype>PH</swtype>
      <area_patched>NE</area_patched>
      <patch_base operation="greater than or equal">32606</patch_base>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2930" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">38</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2758" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">2</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1114" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">18</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1113" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">15</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1020" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1019" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1018" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:2929" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid operation="equals" datatype="boolean">true</suid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2928" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:2728" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">30</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2912" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">52</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:818" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:807" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:806" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2689" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">3</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:2687" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2686" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2685" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:2682" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">6</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:791" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:708" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:698" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">27</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:685" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:678" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">14</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:677" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:676" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2909" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">9</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2668" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">20</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2666" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:617" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:616" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:609" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:605" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">12</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:604" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">19</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:603" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2647" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:2745" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2744" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2743" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:592" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <inetd_state id="oval:org.mitre.oval:ste:591" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/sbin/in.ftpd</server_program>
    </inetd_state>
    <patch_state id="oval:org.mitre.oval:ste:578" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:577" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">13</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:576" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">06</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:568" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">13</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:567" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="equals" datatype="int">12</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:556" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <inetd_state id="oval:org.mitre.oval:ste:555" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="pattern match" datatype="string">^.*smbd.*</server_program>
    </inetd_state>
    <patch_state id="oval:org.mitre.oval:ste:551" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:531" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:530" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:529" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:527" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:526" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:525" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:524" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">14</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:523" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:522" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:521" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:520" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:519" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:518" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:517" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:516" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:515" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:493" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:492" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:491" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">33</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:490" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">18</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:489" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">12</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:563" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">07</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:562" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:462" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:461" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:460" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <inetd_state id="oval:org.mitre.oval:ste:2746" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/openwin/bin/kcms_server</server_program>
    </inetd_state>
    <patch_state id="oval:org.mitre.oval:ste:459" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:447" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:1043" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:441" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <inetd_state id="oval:org.mitre.oval:ste:2688" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/openwin/lib/fs.auto</server_program>
    </inetd_state>
    <patch_state id="oval:org.mitre.oval:ste:697" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">12</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:432" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:431" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:430" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:429" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:423" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2858" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">2</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:2911" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <sgid operation="equals" datatype="boolean">true</sgid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2910" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:2850" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">38</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:399" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:398" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:397" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:387" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:379" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="equals" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:378" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">10</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:372" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">14</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:371" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">07</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:370" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:428" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:368" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">11</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:367" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">11</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:494" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">24</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:366" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">18</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:365" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:359" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:355" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:354" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">04</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:350" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">16</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:345" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">07</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:344" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">06</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:335" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">13</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:334" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">07</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:333" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2839" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">1</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:332" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">06</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:331" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">09</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:330" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2832" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:321" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:320" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">12</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2453" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:310" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">25</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:309" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">19</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:308" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:466" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:465" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:464" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:463" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:954" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:953" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:294" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">38</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:293" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">17</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:588" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:587" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">05</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:557" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">15</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:277" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">03</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:276" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">08</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:275" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2395" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">25</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2394" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">30</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2815" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">2</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2363" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2362" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2361" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2806" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">19</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2802" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">2</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:2940" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2939" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <suid operation="equals" datatype="boolean">true</suid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2938" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <sgid operation="equals" datatype="boolean">true</sgid>
    </file_state>
    <inetd_state id="oval:org.mitre.oval:ste:2838" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/lib/netsvc/rwall/rpc.rwalld</server_program>
    </inetd_state>
    <file_state id="oval:org.mitre.oval:ste:2837" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2836" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2835" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:2784" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">1</version>
    </patch_state>
    <patch_state id="oval:org.mitre.oval:ste:2778" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">51</version>
    </patch_state>
    <file_state id="oval:org.mitre.oval:ste:2777" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <sgid operation="equals" datatype="boolean">true</sgid>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2776" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <uname_state id="oval:org.mitre.oval:ste:1401" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <machine_class operation="equals">x86_64</machine_class>
    </uname_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1400" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.4.21-9.EL</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1399" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:5.0.9-2.30E.1</evr>
    </rpminfo_state>
    <inetlisteningservers_state id="oval:org.mitre.oval:ste:1398" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <program_name operation="pattern match">^.*snmpd.*</program_name>
    </inetlisteningservers_state>
    <inetd_state id="oval:org.mitre.oval:ste:2908" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/dt/bin/rpc.ttdbserverd</server_program>
    </inetd_state>
    <file_state id="oval:org.mitre.oval:ste:2907" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2906" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2905" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <uname_state id="oval:org.mitre.oval:ste:2851" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.7</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:2783" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">19</version>
    </patch_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2679" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <version operation="pattern match">^3.S</version>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1397" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-33.4</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1396" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-33.4</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1395" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-33.4</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1394" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.6b-16</evr>
    </rpminfo_state>
    <patch_state id="oval:org.mitre.oval:ste:2927" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">16</version>
    </patch_state>
    <uname_state id="oval:org.mitre.oval:ste:2941" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.8</os_release>
    </uname_state>
    <process_state id="oval:org.mitre.oval:ste:2934" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <user_id operation="equals">root</user_id>
    </process_state>
    <uname_state id="oval:org.mitre.oval:ste:2857" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <os_release>5.9</os_release>
    </uname_state>
    <patch_state id="oval:org.mitre.oval:ste:2856" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">01</version>
    </patch_state>
    <inetd_state id="oval:org.mitre.oval:ste:2855" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <server_program operation="equals" datatype="string">/usr/lib/fs/cachefs/cachefsd</server_program>
    </inetd_state>
    <file_state id="oval:org.mitre.oval:ste:2854" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <uexec operation="equals" datatype="boolean">true</uexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2853" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <gexec operation="equals" datatype="boolean">true</gexec>
    </file_state>
    <file_state id="oval:org.mitre.oval:ste:2852" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <oexec operation="equals" datatype="boolean">true</oexec>
    </file_state>
    <patch_state id="oval:org.mitre.oval:ste:2761" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#solaris">
      <version operation="greater than or equal" datatype="int">02</version>
    </patch_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:2949" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <version operation="equals">9</version>
    </rpminfo_state>
    <uname_state id="oval:org.mitre.oval:ste:2948" version="1" operator="AND" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix">
      <machine_class operation="pattern match">^i.*86</machine_class>
    </uname_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1341" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-20.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1340" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-20.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1339" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.7a-20.2</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1338" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.6-25.9</evr>
    </rpminfo_state>
    <rpminfo_state id="oval:org.mitre.oval:ste:1337" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.9.6b-15</evr>
    </rpminfo_state>
  </states>
</oval_definitions>