HP-UX Password File Corruption Vulnerability
BID:4582
Info
HP-UX Password File Corruption Vulnerability
| Bugtraq ID: | 4582 |
| Class: | Design Error |
| CVE: |
CVE-2002-0577 |
| Remote: | No |
| Local: | Yes |
| Published: | Apr 24 2002 12:00AM |
| Updated: | Jul 11 2009 12:46PM |
| Credit: | Published in HP security bulletin HPSBUX0204-191. |
| Vulnerable: |
HP HP-UX (VVOS) 11.0 4 HP HP-UX 11.11 HP HP-UX 11.0 |
| Not Vulnerable: | |
Discussion
HP-UX Password File Corruption Vulnerability
A vulnerability has been reported in some versions of HP-UX.
A user may be able to corrupt password files using the passwd(1) command. Any user which then attempts to authenticate could be denied access to the host.
Under some circumstances, this may result in a denial of service condition.
No further details are currently available.
A vulnerability has been reported in some versions of HP-UX.
A user may be able to corrupt password files using the passwd(1) command. Any user which then attempts to authenticate could be denied access to the host.
Under some circumstances, this may result in a denial of service condition.
No further details are currently available.
Exploit / POC
HP-UX Password File Corruption Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.