Vulnerabilities (CVE)

Filtered by vendor Hp Subscribe
Filtered by product Hp-ux
Total 478 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0105 1 Hp 1 Hp-ux 2025-04-03 2.1 LOW N/A
Vulnerability in top in HP-UX 11.04 and earlier allows local users to overwrite files owned by the "sys" group.
CVE-2003-1099 1 Hp 1 Hp-ux 2025-04-03 2.1 LOW N/A
shar on HP-UX B.11.00, B.11.04, and B.11.11 creates temporary files with predictable names in /tmp, which allows local users to cause a denial of service and possibly execute arbitrary code via a symlink attack.
CVE-1999-1239 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
HP-UX 9.x does not properly enable the Xauthority mechanism in certain conditions, which could allow local users to access the X display even when they have not explicitly been authorized to do so.
CVE-1999-0324 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
ppl program in HP-UX allows local users to create root files through symlinks.
CVE-1999-0104 4 Caldera, Hp, Microsoft and 1 more 5 Openlinux, Hp-ux, Windows 95 and 2 more 2025-04-03 5.0 MEDIUM N/A
A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.
CVE-2005-4316 1 Hp 1 Hp-ux 2025-04-03 7.8 HIGH N/A
HP-UX B.11.00, B.11.04, B.11.11, and B.11.23 allows remote attackers to cause a denial of service via a "Rose Attack" that involves sending a subset of small IP fragments that do not form a complete, larger packet.
CVE-2003-1098 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
The Xserver for HP-UX 11.22 was not properly built, which introduced a vulnerability that allows local users to gain privileges.
CVE-2002-1618 1 Hp 2 Hp-ux, Jfs 2025-04-03 7.2 HIGH N/A
JFS (JFS3.1 and OnlineJFS) in HP-UX 10.20, 11.00, and 11.04 does not properly implement the sticky bit functionality, which could allow attackers to bypass intended restrictions on filesystems.
CVE-2001-1256 1 Hp 1 Hp-ux 2025-04-03 1.2 LOW N/A
kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files.
CVE-2001-1509 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
geteuid in Itanium Architecture (IA) running on HP-UX 11.20 does not properly identify a user's effective user id, which could allow local users to gain privileges.
CVE-2001-0817 1 Hp 1 Hp-ux 2025-04-03 10.0 HIGH N/A
Vulnerability in HP-UX line printer daemon (rlpdaemon) in HP-UX 10.01 through 11.11 allows remote attackers to modify arbitrary files and gain root privileges via a certain print request.
CVE-2001-0379 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights.
CVE-1999-1205 1 Hp 1 Hp-ux 2025-04-03 2.1 LOW N/A
nettune in HP-UX 10.01 and 10.00 is installed setuid root, which allows local users to cause a denial of service by modifying critical networking configuration information.
CVE-1999-0015 4 Hp, Microsoft, Netbsd and 1 more 5 Hp-ux, Windows 95, Windows Nt and 2 more 2025-04-03 5.0 MEDIUM N/A
Teardrop IP denial of service.
CVE-2000-0801 1 Hp 1 Hp-ux 2025-04-03 7.2 HIGH N/A
Buffer overflow in bdf program in HP-UX 11.00 may allow local users to gain root privileges via a long -t option.
CVE-1999-1238 1 Hp 1 Hp-ux 2025-04-03 4.6 MEDIUM N/A
Vulnerability in CORE-DIAG fileset in HP message catalog in HP-UX 9.05 and earlier allows local users to gain privileges.
CVE-2006-3201 1 Hp 1 Hp-ux 2025-04-03 4.9 MEDIUM N/A
Unspecified vulnerability in the kernel in HP-UX B.11.00, B.11.11, and B.11.23 allows local users to cause an unspecified denial of service via unknown vectors.
CVE-2002-2138 1 Hp 2 Advanced Server 9000, Hp-ux 2025-04-03 5.0 MEDIUM N/A
RFC-NETBIOS in HP Advanced Server/9000 B.04.05 through B.04.09, when running HP-UX 11.00 or 11.11, allows remote attackers to cause a denial of service (panic) via a malformed UDP packet on port 139.
CVE-2002-1607 1 Hp 2 Hp-ux, Tru64 2025-04-03 4.6 MEDIUM N/A
Buffer overflow in ypmatch in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to execute arbitrary code.
CVE-2004-0716 1 Hp 1 Hp-ux 2025-04-03 10.0 HIGH N/A
Buffer overflow in the DCE daemon (DCED) for the DCE endpoint mapper (epmap) on HP-UX 11 allows remote attackers to execute arbitrary code via a request with a small fragment length and a large amount of data.