Vulnerabilities (CVE)

Filtered by vendor Hp Subscribe
Filtered by product Hp-ux
Total 466 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-1244 7 Freebsd, Hp, Linux and 4 more 9 Freebsd, Hp-ux, Vvos and 6 more 2024-02-28 5.0 MEDIUM N/A
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process.
CVE-1999-0246 1 Hp 1 Hp-ux 2024-02-28 10.0 HIGH N/A
HP Remote Watch allows a remote user to gain root access.
CVE-2001-1564 1 Hp 1 Hp-ux 2024-02-28 2.1 LOW N/A
setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on processes after setuid or setgid privileges are dropped, which could allow local users to cause a denial of service by exhausting available disk space.
CVE-2003-0914 9 Compaq, Freebsd, Hp and 6 more 10 Tru64, Freebsd, Hp-ux and 7 more 2024-02-28 4.3 MEDIUM N/A
ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.
CVE-2002-2263 1 Hp 2 Hp-ux, Visualize Conference Ftp 2024-02-28 6.6 MEDIUM N/A
The installation program for HP-UX Visualize Conference B.11.00.11 running on HP-UX 11.00 and 11.11 installs /etc/dt and its subdirecties with insecure permissions, which allows local users to read or write arbitrary files.
CVE-1999-0050 1 Hp 1 Hp-ux 2024-02-28 7.2 HIGH N/A
Buffer overflow in HP-UX newgrp program.
CVE-2002-1668 1 Hp 3 Hp-ux, Hp-ux Series 700, Hp-ux Series 800 2024-02-28 2.1 LOW N/A
HP-UX 11.11 and earlier allows local users to cause a denial of service (kernel deadlock), due to a "file system weakness" that is possibly via an mmap() system call and performing an I/O operation using data from the mapped buffer on the file descriptor for the mapped file.
CVE-1999-1145 1 Hp 1 Hp-ux 2024-02-28 7.2 HIGH N/A
Vulnerability in Glance programs in GlancePlus for HP-UX 10.20 and earlier allows local users to access arbitrary files and gain privileges.
CVE-1999-0003 5 Hp, Ibm, Sgi and 2 more 6 Hp-ux, Aix, Irix and 3 more 2024-02-28 10.0 HIGH N/A
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
CVE-2002-1618 1 Hp 2 Hp-ux, Jfs 2024-02-28 7.2 HIGH N/A
JFS (JFS3.1 and OnlineJFS) in HP-UX 10.20, 11.00, and 11.04 does not properly implement the sticky bit functionality, which could allow attackers to bypass intended restrictions on filesystems.
CVE-1999-0686 2 Hp, Netscape 2 Hp-ux, Enterprise Server 2024-02-28 5.0 MEDIUM N/A
Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL.
CVE-2000-0005 1 Hp 3 9000, Aserver, Hp-ux 2024-02-28 7.2 HIGH N/A
HP-UX aserver program allows local users to gain privileges via a symlink attack.
CVE-2003-1359 2 Avaya, Hp 2 Predictive Dialer System, Hp-ux 2024-02-28 7.2 HIGH N/A
Buffer overflow in stmkfont utility of HP-UX 10.0 through 11.22 allows local users to gain privileges via a long command line argument.
CVE-2002-0585 1 Hp 1 Hp-ux 2024-02-28 5.0 MEDIUM N/A
Unknown vulnerability in ndd for HP-UX 11.11 with certain TRANSPORT patches allows attackers to cause a denial of service.
CVE-2002-1337 7 Gentoo, Hp, Netbsd and 4 more 9 Linux, Alphaserver Sc, Hp-ux and 6 more 2024-02-28 10.0 HIGH N/A
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.
CVE-2001-1509 1 Hp 1 Hp-ux 2024-02-28 4.6 MEDIUM N/A
geteuid in Itanium Architecture (IA) running on HP-UX 11.20 does not properly identify a user's effective user id, which could allow local users to gain privileges.
CVE-1999-0326 1 Hp 1 Hp-ux 2024-02-28 4.6 MEDIUM N/A
Vulnerability in HP-UX mediainit program.
CVE-2002-1317 4 Hp, Sgi, Sun and 1 more 5 Hp-ux, Irix, Solaris and 2 more 2024-02-28 7.5 HIGH N/A
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.
CVE-1999-0132 2 Hp, Sun 3 Hp-ux, Solaris, Sunos 2024-02-28 2.1 LOW N/A
Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root access.
CVE-2003-1362 1 Hp 2 Bastille, Hp-ux 2024-02-28 7.8 HIGH N/A
Bastille B.02.00.00 of HP-UX 11.00 and 11.11 does not properly configure the (1) NOVRFY and (2) NOEXPN options in the sendmail.cf file, which could allow remote attackers to verify the existence of system users and expand defined sendmail aliases.