CVE Vulnerabilities

CVE-2004-0965

Published: Feb 09, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

stmkfont in HP-UX B.11.00 through B.11.23 relies on the user-specified PATH when executing certain commands, which allows local users to execute arbitrary code by modifying the PATH environment variable to point to malicious programs.

Affected Software

NameVendorStart VersionEnd Version
Hp-uxHp11.00 (including)11.00 (including)
Hp-uxHp11.11 (including)11.11 (including)
Hp-uxHp11.22 (including)11.22 (including)
Hp-uxHp11.23 (including)11.23 (including)

References