First published: Fri Sep 13 2002(Updated: )
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to execute arbitrary code via (1) msgchk or (2) .upd..loader.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HP Tru64 | =4.0g | |
HP Tru64 | =5.0a | |
HP Tru64 | =4.0f | |
HPE HP-UX | =11.11 | |
HP Tru64 | =5.1a | |
HPE HP-UX | =11.04 | |
HPE HP-UX | =11.00 | |
HP Tru64 | =5.1 | |
HPE HP-UX | =11.22 | |
HPE HP-UX | =10.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1615 is considered critical due to its potential to allow local users to execute arbitrary code.
To fix CVE-2002-1615, you need to apply the appropriate patches provided by HP for affected versions of Tru64 UNIX and HP-UX.
CVE-2002-1615 affects HP Tru64 UNIX versions 4.0f, 4.0g, 5.0a, 5.1, and 5.1a, as well as multiple versions of HP-UX.
CVE-2002-1615 is caused by multiple buffer overflows in the msgchk and .upd..loader components of HP Tru64 UNIX.
Local users on systems running the affected versions of HP Tru64 UNIX and HP-UX are impacted by CVE-2002-1615.