CVE-2011-4159: Medium severity hp event monitoring service vulnerability
Published Nov 19, 2011
·Updated
Unspecified vulnerability in System Administration Manager (SAM) in EMS before A.04.20.11.0401 on HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to gain privileges via unknown vectors.
Affected Software
4 affected components
HP Event Monitoring Service<=a.04.20.11.04
HPE HP-UX=b.11.11
HPE HP-UX=b.11.23
HPE HP-UX=b.11.31
Event History
Nov 19, 2011
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
03:58 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-4159?
The severity of CVE-2011-4159 is classified as high due to the potential for local privilege escalation.
2
How do I fix CVE-2011-4159?
To fix CVE-2011-4159, upgrade the HP Event Monitoring Service to a version above A.04.20.11.04_01.
3
Which versions of HP-UX are affected by CVE-2011-4159?
CVE-2011-4159 affects HP-UX versions B.11.11, B.11.23, and B.11.31.
4
Who is impacted by CVE-2011-4159?
Local users on systems running vulnerable versions of HP Event Monitoring Service are impacted by CVE-2011-4159.
5
What should I do if I cannot upgrade for CVE-2011-4159?
If you cannot upgrade, consider implementing additional security measures to restrict local access until a fix can be applied.