Filtered by vendor Hp Subscriptions
Filtered by product Hp-ux Subscriptions
Total 479 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2001-0979 1 Hp 1 Hp-ux 2025-04-03 N/A
Buffer overflow in swverify in HP-UX 11.0, and possibly other programs, allows local users to gain privileges via a long command line argument.
CVE-2001-1124 1 Hp 1 Hp-ux 2025-04-03 N/A
rpcbind in HP-UX 11.00, 11.04 and 11.11 allows remote attackers to cause a denial of service (core dump) via a malformed RPC portmap requests, possibly related to a buffer overflow.
CVE-2001-1136 1 Hp 1 Hp-ux 2025-04-03 N/A
The libsecurity library in HP-UX 11.04 (VVOS) allows attackers to cause a denial of service.
CVE-2001-1181 1 Hp 1 Hp-ux 2025-04-03 N/A
Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.
CVE-2001-1256 1 Hp 1 Hp-ux 2025-04-03 N/A
kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files.
CVE-2001-1264 1 Hp 2 Hp-ux, Vvos 2025-04-03 N/A
Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges.
CVE-1999-1239 1 Hp 1 Hp-ux 2025-04-03 N/A
HP-UX 9.x does not properly enable the Xauthority mechanism in certain conditions, which could allow local users to access the X display even when they have not explicitly been authorized to do so.
CVE-2001-1564 1 Hp 1 Hp-ux 2025-04-03 N/A
setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on processes after setuid or setgid privileges are dropped, which could allow local users to cause a denial of service by exhausting available disk space.
CVE-2002-0992 1 Hp 1 Hp-ux 2025-04-03 N/A
Unknown vulnerability in IPV6 functionality for DCE daemons (1) dced or (2) rpcd on HP-UX 11.11 allows attackers to cause a denial of service (crash) via an attack that modifies internal data.
CVE-1999-0040 7 Bsdi, Freebsd, Hp and 4 more 10 Bsd Os, Freebsd, Hp-ux and 7 more 2025-04-03 N/A
Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
CVE-1999-0078 10 Bsdi, Freebsd, Hp and 7 more 11 Bsd Os, Freebsd, Hp-ux and 8 more 2025-04-03 N/A
pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call.
CVE-1999-0129 7 Bsdi, Eric Allman, Freebsd and 4 more 9 Bsd Os, Sendmail, Freebsd and 6 more 2025-04-03 N/A
Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
CVE-2003-1356 1 Hp 1 Hp-ux 2025-04-03 N/A
The "file handling" in sort in HP-UX 10.01 through 10.20, and 11.00 through 11.11 is "incorrect," which allows attackers to gain access or cause a denial of service via unknown vectors.
CVE-2003-1360 1 Hp 1 Hp-ux 2025-04-03 N/A
Buffer overflow in the setupterm function of (1) lanadmin and (2) landiag programs of HP-UX 10.0 through 10.34 allows local users to execute arbitrary code via a long TERM environment variable.
CVE-2003-1362 1 Hp 2 Bastille, Hp-ux 2025-04-03 N/A
Bastille B.02.00.00 of HP-UX 11.00 and 11.11 does not properly configure the (1) NOVRFY and (2) NOEXPN options in the sendmail.cf file, which could allow remote attackers to verify the existence of system users and expand defined sendmail aliases.
CVE-1999-0307 1 Hp 1 Hp-ux 2025-04-03 N/A
Buffer overflow in HP-UX cstm program allows local users to gain root privileges.
CVE-1999-0308 1 Hp 1 Hp-ux 2025-04-03 N/A
HP-UX gwind program allows users to modify arbitrary files.
CVE-1999-0324 1 Hp 1 Hp-ux 2025-04-03 N/A
ppl program in HP-UX allows local users to create root files through symlinks.
CVE-2002-1406 1 Hp 1 Hp-ux 2025-04-03 N/A
Unknown vulnerability in passwd for VVOS HP-UX 11.04, with unknown impact, related to "Unexpected behavior."
CVE-2002-1409 1 Hp 1 Hp-ux 2025-04-03 N/A
ptrace on HP-UX 11.00 through 11.11 allows local users to cause a denial of service (data page fault panic) via "an incorrect reference to thread register state."