First published: Sat Dec 15 2001(Updated: )
RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HPE HP-UX | =11.11 | |
HPE HP-UX | =10.01 | |
HPE HP-UX | =11.00 | |
HPE HP-UX | =10.20 | |
HPE HP-UX | =10.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1198 is considered a moderate severity vulnerability due to its potential to allow local users to gain elevated privileges.
CVE-2001-1198 allows local users to overwrite arbitrary files by specifying a target file using the -L option in RLPDaemon.
CVE-2001-1198 affects HP-UX versions 10.10, 10.20, 11.00, and 11.11.
To fix CVE-2001-1198, users should apply relevant updates or patches provided by HPE for the affected HP-UX versions.
Local users on systems running vulnerable versions of HP-UX are impacted by CVE-2001-1198 as it allows them to exploit file permissions.