CVE-2001-1198: High severity HPE HP-UX vulnerability
Published Dec 15, 2001
·Updated
RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.
Affected Software
5 affected components
HPE HP-UX=11.11
HPE HP-UX=10.01
HPE HP-UX=11.00
HPE HP-UX=10.20
HPE HP-UX=10.10
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 15, 2001
CVE Published
05:00 AM
Mar 15, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1198?
CVE-2001-1198 is considered a moderate severity vulnerability due to its potential to allow local users to gain elevated privileges.
2
How does CVE-2001-1198 exploit the system?
CVE-2001-1198 allows local users to overwrite arbitrary files by specifying a target file using the -L option in RLPDaemon.
3
Which systems are affected by CVE-2001-1198?
CVE-2001-1198 affects HP-UX versions 10.10, 10.20, 11.00, and 11.11.
4
How do I fix CVE-2001-1198?
To fix CVE-2001-1198, users should apply relevant updates or patches provided by HPE for the affected HP-UX versions.
5
Who is impacted by CVE-2001-1198?
Local users on systems running vulnerable versions of HP-UX are impacted by CVE-2001-1198 as it allows them to exploit file permissions.