First published: Wed Feb 07 2007(Updated: )
The ps (/usr/ucb/ps) command on HP Tru64 UNIX 5.1 1885 allows local users to obtain sensitive information, including environment variables of arbitrary processes, via the "auxewww" argument, a similar issue to CVE-1999-1587.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HP Tru64 | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0805 is considered a moderate severity vulnerability due to its potential to expose sensitive information.
To fix CVE-2007-0805, it is recommended to restrict access to the ps command on HP Tru64 UNIX 5.1 or apply relevant security patches provided by HP.
CVE-2007-0805 affects local users of HP Tru64 UNIX 5.1 who can execute the ps command with the 'auxewww' argument.
Through CVE-2007-0805, local users can access sensitive information, including environment variables of arbitrary processes.
CVE-2007-0805 was disclosed in February 2007.