CVE-2003-0724: High severity compaq tru64 vulnerability
Published Sep 3, 2003
·Updated
ssh on HP Tru64 UNIX 5.1B and 5.1A does not properly handle RSA signatures when digital certificates and RSA keys are used, which could allow local and remote attackers to gain privileges.
Affected Software
7 affected components
Compaq Tru64=5.1a_pk4_bl21
Compaq Tru64=5.1a_pk3_bl3
Compaq Tru64=5.1b_pk2_bl22
Compaq Tru64=5.1a
Compaq Tru64=5.1a_pk5_bl23
Compaq Tru64=5.1a_pk2_bl2
Compaq Tru64=5.1a_pk1_bl1
Remediation
Patch Available
Event History
Sep 3, 2003
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Oct 20, 2003
Data Sourced
via NVD·04:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0724?
CVE-2003-0724 is considered a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2003-0724?
To fix CVE-2003-0724, update your HP Tru64 UNIX system to apply the necessary security patches provided by Compaq.
3
Who is affected by CVE-2003-0724?
CVE-2003-0724 affects users of HP Tru64 UNIX versions 5.1A and 5.1B, specifically the specified patch levels.
4
What types of attacks can exploit CVE-2003-0724?
Local and remote attackers can exploit CVE-2003-0724 to gain elevated privileges on affected systems.
5
When was CVE-2003-0724 discovered?
CVE-2003-0724 was discovered in the year 2003 and reported publicly thereafter.