HP-UX Vue three.0 enables nearby consumer to get root privileges hp-vue (2284) High Threat ,
Office Professional Plus 2007
Description:
A vulnerability in Vue in HP-UX programs could enable a local attacker to gain superuser privileges.
Consequences:
Gain Privileges
Remedy:
This concern was resolved by two sets of patches from two different Hewlett-Packard Security Bulletins:
HPSBUX9404-008: Use patch PHSS_4055 for HP9000 Sequence 300/400 or patch PHSS_4038 for HP9000 Sequence 700/800. See References. HPSBUX9504-027. Use patch PHSS_4055 for HP9000 Sequence 300/400 or patch PHSS_4066 for HP9000 Sequence 700/800. See References.
References:
CIAC Data Bulletin E-23b: Vulnerability in HP-UX programs with HP Vue 3.0. Hewlett-Packard Organization Safety Bulletin HPSBUX9404-008: Safety Vulnerability in Vue three.0. Hewlett-Packard Company Protection Bulletin HPSBUX9504-027: Security Vulnerability in HP VUE3.0. (From SecurityFocus archive.) CVE-1999-1134: Vulnerability in Vue three.0 in HP nine.x allows neighborhood consumers to realize root privileges, as fixed by PHSS_4038,
Windows 7 Ultimate Product Key, PHSS_4055, and PHSS_4066. CVE-1999-1135: Vulnerability in VUE 3.0 in HP nine.x permits regional end users to gain root privileges,
Microsoft Office 2010 Sale IT Professionals in Schools Pling!,
Windows 7 Ultimate 64 Bit, as fixed by PHSS_4994 and PHSS_5438.
Platforms Impacted:
HP HP-UX nine.00 HP HP-UX 9.01 HP HP-UX 9.03 HP HP-UX 9.04 HP HP-UX 9.05 HP HP-UX 9.06 HP HP-UX 9.07 HP HP-UX nine.08 HP HP-UX nine.09 HP HP-UX 9.10
Reported:
Apr twenty,
Windows 7 Home Basic Key, 1994
The info inside of this database might modify without having recognize. Utilization of this data constitutes acceptance for use in an AS IS issue. There are no warranties, implied or or else,
Buy Office Professional Plus 2007, with regard to this data or its use. Any use of this data is in the user's risk. In no celebration shall the author/distributor (IBM Web Safety Methods X-Force) be held liable for almost any damages whatsoever arising out of or in connection together with the use or spread of this info.
For corrections or additions make sure you electronic mail xforce@iss.net
Return to the principal page