Description: A vulnerability has been reported in HP Tru64, which can be exploited by malicious, local users to gain escalated privileges.
The vulnerability is caused due to a boundary error in libpthread when handling the "PTHREAD_CONFIG" environment variable. This can be exploited to cause a buffer overflow via a specially crafted data in the variable.
Successful exploitation may allow execution of arbitrary code with "root" privileges.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.