CVE-2006-5558: Critical severity HPE HP-UX vulnerability
Format string vulnerability in the swask command in HP-UX B.11.11 and possibly other versions allows local users to execute arbitrary code via format string specifiers in the -s argument. NOTE: this might be a duplicate of CVE-2006-2574, but the details relating to CVE-2006-2574 are too vague to be certain.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-5558?
CVE-2006-5558 is classified as a high severity vulnerability due to its potential to allow local users to execute arbitrary code.
How do I fix CVE-2006-5558?
To fix CVE-2006-5558, it is recommended to update HP-UX to a patched version that addresses the format string vulnerability.
Which versions are affected by CVE-2006-5558?
CVE-2006-5558 affects HP-UX versions 11.00, 11.11, 11.4, and 11.23.
What type of vulnerability is CVE-2006-5558?
CVE-2006-5558 is a format string vulnerability.
Can CVE-2006-5558 be exploited remotely?
CVE-2006-5558 is primarily a local vulnerability and requires local user access for exploitation.