First published: Wed Jun 27 2001(Updated: )
pcltotiff in HP-UX 10.x has unnecessary set group id permissions, which allows local users to cause a denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HPE HP-UX | =10.01 | |
HPE HP-UX | =10.26 | |
HPE HP-UX | =10.20 | |
HPE HP-UX | =10.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0488 is considered a moderate severity vulnerability that may lead to a denial of service.
To fix CVE-2001-0488, remove the unnecessary set group id permissions from the pcltotiff executable.
CVE-2001-0488 affects local users on HP-UX versions 10.01, 10.10, 10.20, and 10.26.
An attacker can exploit CVE-2001-0488 to cause a denial of service for local system users.
CVE-2001-0488 was disclosed in 2001, highlighting a problem with permissions in HP-UX.