Vulnerabilities > HP > HP UX

DATE CVE VULNERABILITY TITLE RISK
2011-04-04 CVE-2011-0891 Local Denial Of Service vulnerability in HP Hp-Ux B.11.23/B.11.31
Unspecified vulnerability in the OS-Core.CORE2-KRN fileset in HP HP-UX B.11.23 and B.11.31 allows local users to cause a denial of service via unknown vectors.
local
hp
4.4
2011-01-28 CVE-2011-0343 Permissions, Privileges, and Access Controls vulnerability in Oneidentity Syslog-Ng
Balabit syslog-ng 2.0, 3.0, 3.1, 3.2 OSE and PE, when running on FreeBSD or HP-UX, does not properly perform cast operations, which causes syslog-ng to use a default value of -1 to create log files with insecure permissions (07777), which allows local users to read and write to these log files.
6.9
2010-12-08 CVE-2010-4108 Remote Denial Of Service vulnerability in HP Hp-Ux B.11.11/B.11.23/B.11.31
HP HP-UX B.11.11, B.11.23, and B.11.31 does not properly support threaded processes, which allows remote authenticated users to cause a denial of service via unspecified vectors.
network
low complexity
hp
6.8
2010-08-30 CVE-2010-2712 Unspecified vulnerability in HP Hp-Ux B.11.11/B.11.23/B.11.31
Unspecified vulnerability in Software Distributor (sd) in HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to gain privileges via unknown vectors.
local
low complexity
hp
6.8
2010-05-20 CVE-2010-1039 USE of Externally-Controlled Format String vulnerability in multiple products
Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCplus B.11.31_09 and earlier on HP HP-UX B.11.11, B.11.23, and B.11.31; and SGI IRIX 6.5 allows remote attackers to execute arbitrary code via an RPC request containing format string specifiers in an invalid directory name.
network
low complexity
hp ibm sgi CWE-134
critical
10.0
2010-05-14 CVE-2010-1556 Unauthorized Access vulnerability in HP Systems Insight Manager 5.3/6.0
Unspecified vulnerability in HP Systems Insight Manager (SIM) 5.3, 5.3 Update 1, and 6.0 allows remote attackers to obtain sensitive information and modify data via unknown vectors.
network
low complexity
hp linux microsoft
6.4
2010-04-21 CVE-2010-1032 Local Denial Of Service vulnerability in HP Hp-Ux B.11.11
Unspecified vulnerability in HP HP-UX B.11.11 allows local users to cause a denial of service via unknown vectors.
local
low complexity
hp
4.9
2010-04-21 CVE-2009-4777 Products GIF File Parsing Denial of Service vulnerability in Hitachi
Unspecified vulnerability in multiple versions of Hitachi JP1/Automatic Job Management System 2 - View, JP1/Integrated Management - View, and JP1/Cm2/SNMP System Observer, allows remote attackers to cause a denial of service ("abnormal" termination) via vectors related to the display of an "invalid GIF file."
4.3
2010-03-31 CVE-2010-1030 Local Denial Of Service vulnerability in HP Hp-Ux B.11.31
Unspecified vulnerability in HP-UX B.11.31, with AudFilter rules enabled, allows local users to cause a denial of service via unknown vectors.
local
hp
4.4
2010-03-29 CVE-2010-0451 Permissions, Privileges, and Access Controls vulnerability in HP Hp-Ux 11.31/B.11.31
The installation process for NFS/ONCplus B.11.31_08 and earlier on HP HP-UX B.11.31 changes the NFS_SERVER setting in the nfsconf file, which might allow remote attackers to obtain filesystem access via NFS requests.
network
high complexity
hp CWE-264
4.0