CVE-2006-5557: Buffer Overflow
Stack-based buffer overflow in the (1) swpackage and (2) swmodify commands in HP-UX B.11.11 and possibly other versions allows local users to execute arbitrary code via a long -S argument. NOTE: this might be a duplicate of CVE-2006-2574, but the details relating to CVE-2006-2574 are too vague to be certain.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-5557?
CVE-2006-5557 is classified as a high severity vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2006-5557?
To fix CVE-2006-5557, users should apply the latest security patches provided by HPE for affected versions of HP-UX.
Who is affected by CVE-2006-5557?
CVE-2006-5557 affects local users of HP-UX versions 11.00, 11.11, and 11.4.
What causes CVE-2006-5557?
CVE-2006-5557 is caused by a stack-based buffer overflow in the swpackage and swmodify commands due to improper handling of long -S arguments.
Is CVE-2006-5557 a duplicate of another CVE?
CVE-2006-5557 may be a duplicate of CVE-2006-2574, although the details of the latter are less clear.