PT-2001-2333 · Hewlett Packard · Hp-Ux

Publicado

2001-12-15

·

Atualizado

2017-10-11

·

CVE-2001-1198

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HP-UX versions 10.20 through 11.0
Description The issue allows local users to overwrite arbitrary files and gain privileges. This is achieved by specifying the target file in the -L option of the RLPDaemon.
Recommendations For HP-UX versions 10.20 through 11.0, consider restricting access to the RLPDaemon to minimize the risk of exploitation. As a temporary workaround, avoid using the -L option until a patch is available. At the moment, there is no information about a newer version that contains a fix for this issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2001-1198

Produtos afetados

Hp-Ux