CVE-2003-1360: Buffer Overflow
Published Dec 31, 2003
·Updated
Buffer overflow in the setupterm function of (1) lanadmin and (2) landiag programs of HP-UX 10.0 through 10.34 allows local users to execute arbitrary code via a long TERM environment variable.
Affected Software
11 affected components
HPE HP-UX=10.30
HPE HP-UX=10.01
HPE HP-UX=10.00
HPE HP-UX=10.26
HPE HP-UX=10.34
HPE HP-UX=10.24
HPE HP-UX=10.08
HPE HP-UX=10.20
HPE HP-UX=10.09
HPE HP-UX=10.10
HPE HP-UX=10.16
Event History
Dec 31, 2003
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityWeaknessAffected Software
Oct 17, 2007
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-1360?
CVE-2003-1360 is considered to have a high severity due to the potential for local users to execute arbitrary code.
2
How do I fix CVE-2003-1360?
To fix CVE-2003-1360, it is recommended to apply patches provided by HP for the affected versions of HP-UX.
3
Which versions of HP-UX are affected by CVE-2003-1360?
CVE-2003-1360 affects HP-UX versions 10.00 through 10.34.
4
What is the nature of the vulnerability in CVE-2003-1360?
CVE-2003-1360 is a buffer overflow vulnerability that allows local users to exploit the setupterm function.
5
Can CVE-2003-1360 be exploited remotely?
CVE-2003-1360 cannot be exploited remotely as it requires local user access.