Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2003-0089

Overview

Vulnerability Score 7.2 7.2
CVE Id CVE-2003-0089
Last Modified 04 Mar 2009 12:17:31
Published 15 Dec 2003 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2003-0089

Summary

Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local users to execute arbitrary code via a long LANG environment variable to setuid programs such as (1) swinstall and (2) swmodify.

Vulnerable Systems

Operating System

  • Hp-ux 11.00

  • Hp-ux 11.11


References

XF - hp-sd-utilities-bo(13623)

BID - 8986

HP - HPSBUX0311-293

BUGTRAQ - 20031113 NSFOCUS SA2003-07: HP-UX Software Distributor Buffer Overflow Vulnerability


Last Updated: 27 May 2016 10:37:46