Vulnerabilities > HP

DATE CVE VULNERABILITY TITLE RISK
2001-07-16 CVE-2001-1181 Local Security vulnerability in HP Hp-Ux 11.11
Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.
local
low complexity
hp
7.2
2001-07-07 CVE-2001-1244 Denial of Service vulnerability in Multiple Vendor Small TCP MSS
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process.
network
low complexity
freebsd hp linux microsoft netbsd openbsd sun
5.0
2001-06-27 CVE-2001-0488 Denial of Service vulnerability in HPUX PCLToTIFF
pcltotiff in HP-UX 10.x has unnecessary set group id permissions, which allows local users to cause a denial of service.
local
low complexity
hp
2.1
2001-06-23 CVE-2001-1162 Remote Arbitrary File Creation vulnerability in Samba
Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwrite certain files via a ..
network
low complexity
samba hp
critical
10.0
2001-06-18 CVE-2001-0379 Local Security vulnerability in HP Hp-Ux 11.11
Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights.
local
low complexity
hp
4.6
2001-06-18 CVE-2001-0249 Incorrect Calculation of Buffer Size vulnerability in multiple products
Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings.
network
low complexity
hp oracle sgi CWE-131
critical
9.8
2001-06-18 CVE-2001-0248 Incorrect Calculation of Buffer Size vulnerability in multiple products
Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generate long strings.
network
low complexity
sgi hp CWE-131
critical
9.8
2001-06-11 CVE-2001-1256 Symbolic Link vulnerability in HP Hp-Ux 11.00/11.04/11.11
kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files.
local
high complexity
hp
1.2
2001-06-02 CVE-2001-0311 Local Security vulnerability in HP Hp-Ux and Omniback II
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.
local
low complexity
hp
4.6
2001-05-22 CVE-2001-0551 Unspecified vulnerability in HP Hp-Ux
Buffer overflow in CDE Print Viewer (dtprintinfo) allows local users to execute arbitrary code by copying text from the clipboard into the Help window.
local
low complexity
hp
7.2