CVE-2000-0005: High severity HP HP-UX vulnerability
HP-UX aserver program allows local users to gain privileges via a symlink attack.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
HP-UX aserverfrom your environment.Uninstall or disable the aserver program until a vendor fix is available to eliminate the symlink-based local privilege escalation vector.
- Compensating control
Harden filesystem permissions and local access: ensure directories and files used by aserver are not writable by unprivileged users, prevent creation of attacker-controlled symlinks in those locations, and restrict untrusted local user accounts until a patch is applied.
- Operational
Audit systems for signs of local privilege escalation (check relevant logs, setuid binaries, new root-owned files) and rotate any credentials or keys that might have been exposed if exploitation is suspected.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0005?
CVE-2000-0005 is considered a high severity vulnerability due to its potential for local privilege escalation.
How do I fix CVE-2000-0005?
To fix CVE-2000-0005, apply the latest security patches provided by HPE for affected HP-UX versions.
Who is affected by CVE-2000-0005?
CVE-2000-0005 affects local users on systems running vulnerable versions of HP-UX.
What type of attack does CVE-2000-0005 involve?
CVE-2000-0005 involves a symlink attack, allowing local users to exploit the vulnerability for privilege escalation.
What is the impact of exploiting CVE-2000-0005?
Exploiting CVE-2000-0005 could allow a local user to gain elevated privileges, compromising the security of the system.