Vulnerabilities > CVE-2001-1509 - Unspecified vulnerability in HP Hp-Ux 11.20

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
hp

Summary

geteuid in Itanium Architecture (IA) running on HP-UX 11.20 does not properly identify a user's effective user id, which could allow local users to gain privileges.

Vulnerable Configurations

Part Description Count
OS
Hp
1

Oval

accepted2008-08-25T04:00:09.754-04:00
classvulnerability
contributors
nameMichael Wood
organizationHewlett-Packard
descriptiongeteuid in Itanium Architecture (IA) running on HP-UX 11.20 does not properly identify a user's effective user id, which could allow local users to gain privileges.
familyunix
idoval:org.mitre.oval:def:5364
statusaccepted
submitted2008-07-10T16:22:36.000-04:00
titleSecurity restrictions are not consistently enforced when starting applications under HP-UX 11.20.
version34