CVE-2000-1028: Buffer Overflow
Published Nov 29, 2000
·Updated
Buffer overflow in cu program in HP-UX 11.0 may allow local users to gain privileges via a long -l command line argument.
Affected Software
11 affected components
HPE HP-UX=9.00
HPE HP-UX=9.01
HPE HP-UX=9.04
HPE HP-UX=9.05
HPE HP-UX=9.06
HPE HP-UX=9.07
HPE HP-UX=9.08
HPE HP-UX=9.09
HPE HP-UX=9.10
HPE HP-UX=10.20
HPE HP-UX=11.00
Remediation
Patch Available
Event History
Nov 29, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1028?
CVE-2000-1028 has a high severity rating due to potential local privilege escalation.
2
How do I fix CVE-2000-1028?
To fix CVE-2000-1028, users should apply the latest patches provided by HP for the affected HP-UX versions.
3
What software is affected by CVE-2000-1028?
CVE-2000-1028 affects various versions of HP-UX, specifically from 9.00 to 11.00.
4
Who is impacted by CVE-2000-1028?
Local users of HP-UX systems who can access the cu program with long command arguments are at risk from CVE-2000-1028.
5
Is CVE-2000-1028 still relevant today?
Yes, CVE-2000-1028 remains relevant for systems still running unsupported versions of HP-UX.