|
Vulnerability Report: HP-UX 11.x
|
This vulnerability report for HP-UX 11.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in HP-UX 11.x then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
|
|
|
|
24 Secunia Advisories in 2004
|
Secunia has issued a total of 24 Secunia advisories in 2004 for HP-UX 11.x. Currently, 4% (1 out of 24) are marked as unpatched with the most severe being rated Moderately critical 
More information about the specific Secunia advisories affecting HP-UX 11.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2004-12-24 |
Secunia Advisory ID: SA13655 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: A vulnerability has been reported in HP-UX, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-22 |
Secunia Advisory ID: SA13608 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: iDEFENSE has reported a vulnerability in HP-UX, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-20 |
Secunia Advisory ID: SA13565 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: A vulnerability has been reported in HP-UX, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-29 |
Secunia Advisory ID: SA13025 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Privilege escalation DoS System access
|
Where: From remote |
|
Short Description: HP has confirmed some vulnerabilities in HP-UX Apache, which can be exploited to cause a DoS (Denial of Service), bypass configured access controls, gain escalated privileges, or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-22 |
Secunia Advisory ID: SA12942 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: NSFOCUS has reported a vulnerability in HP-UX, which can be exploited by malicious people to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-20 |
Secunia Advisory ID: SA12896 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation
|
Where: From remote |
|
Short Description: HP has acknowledged a vulnerability in the Java Runtime Environment software for HP-UX, which can be exploited by untrusted applets to gain escalated privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-09 |
Secunia Advisory ID: SA12244 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS System access
|
Where: From remote |
|
Short Description: HP has confirmed some vulnerabilities in HP-UX, which can be exploited by malicious people to cause a DoS (Denial of Service), bypass security restrictions, or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-28 |
Secunia Advisory ID: SA12168 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: HP has confirmed a vulnerability in HP-UX, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-19 |
Secunia Advisory ID: SA12086 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: HP has acknowledged a vulnerability in their version of WU-FTPD. This can be exploited by malicious, authenticated users to circumvent certain restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-30 |
Secunia Advisory ID: SA11971 |
Solution Status: Vendor Workaround |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: HP has acknowledged multiple vulnerabilities in Netscape for HP-UX, which potentially can be exploited by malicious people to cause a DoS (Denial of Service), gain knowledge of sensitive information, or compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-30 |
Secunia Advisory ID: SA11970 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: A vulnerability has been discovered in HP-UX, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-06-30 |
Secunia Advisory ID: SA11969 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: HP has acknowledged a vulnerability in HP-UX, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-18 |
Secunia Advisory ID: SA11893 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: watercloud has reported a vulnerability in HP-UX, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-11 |
Secunia Advisory ID: SA11843 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: HP has acknowledged a very old vulnerability in ftp for HP-UX, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-26 |
Secunia Advisory ID: SA11717 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: HP has acknowledged a vulnerability in Java for HP-UX, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-05-14 |
Secunia Advisory ID: SA11615 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: Local system |
|
Short Description: HP has reported a vulnerability in HP-UX, which can be exploited by malicious, local users to manipulate the content of certain files. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-14 |
Secunia Advisory ID: SA11614 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: HP has acknowledged a vulnerability in HP-UX, which may be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-14 |
Secunia Advisory ID: SA11613 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS Cross Site Scripting Security Bypass
|
Where: From remote |
|
Short Description: HP has acknowledged various vulnerabilities in Mozilla for HP-UX, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain cookie restrictions, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-27 |
Secunia Advisory ID: SA11468 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data DoS
|
Where: From remote |
|
Short Description: HP has acknowledged some vulnerabilities in their version of the Apache HTTP Server. These can be exploited by malicious people to cause a DoS (Denial of Service) and insert certain potentially malicious characters in log files. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-21 |
Secunia Advisory ID: SA10692 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: HP has issued an update for Mozilla. This fixes a vulnerability, allowing a malicious website to access the contents of other websites. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-17 |
Secunia Advisory ID: SA10657 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS Privilege escalation
|
Where: Local system |
|
Short Description: HP has reported a vulnerability in HP-UX, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain unauthorised access. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-16 |
Secunia Advisory ID: SA10635 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: HP has issued patches for HP-UX. These fix an old vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-01-15 |
Secunia Advisory ID: SA10634 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: HP has issued patches for dtterm included in HP-UX. These fix an older vulnerability, which potentially can be exploited by malicious people to compromise a user's system by tricking the user into viewing a specially crafted plain text file. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-09 |
Secunia Advisory ID: SA10581 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: HP has issued patches for HP-UX, which fix an old vulnerability. This can be exploited by malicious, local users to access arbitrary files on a vulnerable system. [Read More]
|
|
|