CVE-2002-1618: High severity HP JFS vulnerability
Published Oct 16, 2002
·Updated
JFS (JFS3.1 and OnlineJFS) in HP-UX 10.20, 11.00, and 11.04 does not properly implement the sticky bit functionality, which could allow attackers to bypass intended restrictions on filesystems.
Affected Software
4 affected components
HP JFS=3.1
HP HP-UX=11.04
HP HP-UX=11.00
HP HP-UX=10.20
Remediation
Patch Available
Patch Available
Patch Available
Event History
Oct 16, 2002
CVE Published
04:00 AM
Mar 25, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1618?
CVE-2002-1618 is considered a moderate severity vulnerability due to its potential for unauthorized access.
2
How do I fix CVE-2002-1618?
To fix CVE-2002-1618, update to a patched version of JFS or HP-UX that properly implements the sticky bit functionality.
3
What systems are affected by CVE-2002-1618?
CVE-2002-1618 affects JFS versions 3.1 and HP-UX versions 10.20, 11.00, and 11.04.
4
What are the risks of CVE-2002-1618?
The risk of CVE-2002-1618 includes the potential for attackers to bypass filesystem restrictions and manipulate files.
5
Is CVE-2002-1618 still a concern today?
CVE-2002-1618 may still pose a concern for organizations using outdated versions of HP-UX or JFS that have not been patched.