CVE-2006-1509: Medium severity hp hp-ux vulnerability
Published Mar 30, 2006
·Updated
/sbin/passwd in HP-UX B.11.00, B.11.11, and B.11.23 before 20060326 "does not recover gracefully from some error conditions," which allows local users to cause a denial of service.
Affected Software
3 affected components
HPE HP-UX=11.11
HPE HP-UX=11.00
HPE HP-UX=11.23
Remediation
Patch Available
Event History
Mar 30, 2006
CVE Published
01:06 AM
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1509?
CVE-2006-1509 has a low severity as it allows local users to cause a denial of service.
2
How do I fix CVE-2006-1509?
To fix CVE-2006-1509, update your HP-UX system to a version released after March 26, 2006.
3
Which versions of HP-UX are affected by CVE-2006-1509?
CVE-2006-1509 affects HP-UX versions B.11.00, B.11.11, and B.11.23 prior to March 26, 2006.
4
Is CVE-2006-1509 exploitable remotely?
CVE-2006-1509 is not remotely exploitable; it requires local access to the system.
5
What specific component is vulnerable in CVE-2006-1509?
The vulnerable component in CVE-2006-1509 is the /sbin/passwd utility in HP-UX.