Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  HP : HP-UX Directory Server 8.10
  HP : HP-UX 11.31
  HP : HP-UX 11.23
  HP : HP-UX 11.0
  HP : HP-UX 11.22
  HP : HP-UX 11.04
  HP : HP-UX 10.24
  HP : HP-UX 10.10
  HP : HP-UX 10.20
  HP : HP-UX 11.00
Name:HP : HP-UX 11.11

 HP-UX System Administration Manager privilege escalation
document 
 Symantec Veritas Backup Exec code execution
document It's possible to execute privileged command remotely.
 HP-UX Dynamic Loader Privilege Escalation
document 
 HP-UX DoS
document DoS against threaded applicatons.
 HP-UX Software Distributor privilege escalation
   
7!Hewlett Packard applications multiple security vulnerabilities
updated since 18.07.2010
document >20 vulnerabilities in different applications are fixed.
7!HP-UX, IBM AIX, SGI IRIX rpc.pcnfsd format string vulnerability
document Format string vulnerability on syslog() call.
 HP-UX NFS/ONCplus DoS
   
 HP-UX DoS
   
 HP-UX bootpd DoS
   
 HP-UX useradd privilege escalation
   
 HP UX Veritas File System (VRTSvxfs) privilege escalation
   
7!HP-UX IPv6 multiple security vulnerabilities
document Unauthorized access, Denial of Service.
7!HP-UX unauthorized access with ftp server
   
6!HP-UX System Administration Manager unauthorized access
   
6!HP-UX useradd privilege escalation
   
6!HP-UX WBEM multiple security vulnerabilities
document Code execution, privilege escalation.
 Weak initial sequence number generation
updated since 03.05.2001
document Weak initial sequence number generation allows to spoof TCP connection.
 HP-UX ARPA transport DoS
updated since 15.02.2007
   
 HP-UX rpc.yppasswdd DoS
   
6!HP-UX swagentd buffer overflow
document Buffer overflow in sw_rpc_agent_init RPC function.
 HP System Management Homepage crossite scripting
   
 HP-UX get_system_info privilege escalation
document It's possible to change system configuration with get_system_info if Ignite-UX or the DynRootDisk (DRD) are installed.
6!HP-UX HP Controller for Cisco Local Director daemon buffer overflow
document Buffer overflow in ldconn on parsing TCP/17781 traffic.
6!HP-UX pfs_mountd.rpc PFS file system daemon buffer overflow
document Buffer overflow on UDP datagrams parsing.
6!HP-UX SLSd unauthorized access
document It's possible to create any file with attacker-supplied data.
8!Unzuthorized file access via file stdio decriptors in multiple Unix systems
updated since 22.04.2002
document By exhausting all file descriptors and closing stderr it's possible to causesituation called application will open new file with descriptor 2 and all stderr output will be redirected to file. In few systems it's enougth to close standard descriptor.
 HP-UX WBEM DoS
   
 HP-UX privilege escalation
   
 HP Tru64 dtmail buffer overflow
document Buffer overflow on -a flag parsing.
 HP-UX TCP/IP DoS
   
 HP-UX SLP unauthorized access
document Unauthorized Service Locator Protocol access.
6!HP Ignite-UX Server unauthorized access
   
 HP-UX CIFS Server privilege scalation
   
 HP-UX ARPA Transport Software DoS
   
 HP-UX usermod file ownership change
document usermod -d <dir> -u <new uid> -m <username> command causes username to became owner for dir directory recursively.
 HP-UX LP Subsystem DoS
   
 HP-UX DoS
document Support Tools Manager DoS, Trusted Mode DoS.
6!Multiple HP-UX utilities security vulnerabilities
document 'mkdir' privilege escalation, 'passwd' DoS.
 HP-UX DoS
   
 HP-UX Support Tools Manager
   
 HP-UX Secure Shell DoS
   
6!HP-UX Software Distributor unauthorized access
updated since 20.12.2005
   
 HP-UX xterm unauthorized access
   
 Multiple HP-UX vulnerabilities
document It's possible to change file permissions recursively with 'usermod'. DoS with 'passwd'.
 HP-UX swagentd DoS
updated since 24.03.2006
   
 HP-UX xterm privilege escalation
updated since 15.11.2005
   
6!Multiple OSs, routers and firewalls IPSec ISAKMP IKE DoS
updated since 14.11.2005
document Multiple vulnerabilities detected with PROTOS IPSec security scanner.
7!Multiple HP-UX vulnerabilities
document IP packets DoS, IPSec remote unauthorized access.
 HP-UX lpd buffer overflow (outdated)
document Buffer overflow on LPR protocol parsing.
6!ICMP and TCP timestamp attacks to reset TCP connections
updated since 13.04.2005
document By using different ICMP packet types and TCP timestamps values it's possible to cause TCP connection resets or performance decrease.
 HP-UX Veritas file system unauthorized access
   
6!Unauthorized HP-UX remshd access
   
 HP-UX ftpd FTP server multiple vulnerabilities
updated since 22.12.2004
document Buffer overflow in debug mode, unauthorized files access.
6!Netscape Directory Server buffer overflow
updated since 24.12.2004
document LDAP buffer overflow.
 HP-UX SAM privilege escalation
   
6!HP-UX Serviceguard privilege escalation
   
 HP-UX stmkfonts privilege escalation
document External program is called with relative path.
9!Netscape NSS libraries buffer overflow
updated since 25.08.2004
document Buffer overflow during SSL negotiation.
 HP-UX network applications DoS
   
8!HP-UX CIFS (Samba) buffer overflow
document Buffer overflow leads to unauthorized remote access.
6!HP Tru64 UNIX/OpenVMS/HP-UX DCE server buffer overflow
updated since 26.06.2004
document Buffer overflow on RPC parsing.
 HP-UX ObAM WebAdmin unauthorized access
   
7!HP-UX FTP code execution
document It's possiblt to execute application on server by specifing '|' in filename.
7!dtlogin buffer overflow
updated since 24.03.2004
document Buffer overflow during XDMCP parsing.
 HP-UX GTK+ weak permissions
document World-writable directory.
6!IBM AIX libIM buffer overflow
updated since 14.02.2003
document Buffer overflow on NLS functions.
 HP-UX Software Distributor buffer overflow
document Buffer overflow on LANG variable parsing.
6!Multiple SNMP problems
updated since 13.02.2002
document Multiple problems in different SNMP implementation can lead to DoS, remote code execution, etc.
 HP-UX ftpd REST bug
document Because of a bug in REST processing value given is treated as a memory address. It makes it possible to read any memory block.
 HP-UX IGMP DoS
   
7!yellow pages unauthorized access
updated since 10.10.2002
document Vulnerabilities in ypserv and ypxfrd allows file system access with root privileges.
7!Multiple bugs in CDE ToolTalk
updated since 11.07.2002
document Incomplete input validation in different remote calls.
 Buffer overflow in HP-UX cifslogin
updated since 24.06.2002
document Buffer overflow on oversized -P option.
7!Buffer overflow in CDE dtprintinfo
document Buffer overflow in HELP subsistem.
8!Удаленный root через rlpdaemon в HP-UX (code execution)
updated since 21.11.2001
   
9!Переполнение буфера в службе dtspcd в CDE (buffer overflow)
   
9!Ошибка форматной строки в ToolTalk rpc.ttdbserverd (format string)
   
8!Переполнения буфера в утилитах sw* HP-UX (buffer overflow)
   
8!Переполнение буфера в rlpdaemon под HP-UX (buffer overflow)
   
 Проблема с login в HP (shell access)
   
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru