CVE Vulnerabilities

CVE-2004-0965

Published: Feb 09, 2005 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

stmkfont in HP-UX B.11.00 through B.11.23 relies on the user-specified PATH when executing certain commands, which allows local users to execute arbitrary code by modifying the PATH environment variable to point to malicious programs.

Affected Software

Name Vendor Start Version End Version
Hp-ux Hp 11.00 (including) 11.00 (including)
Hp-ux Hp 11.11 (including) 11.11 (including)
Hp-ux Hp 11.22 (including) 11.22 (including)
Hp-ux Hp 11.23 (including) 11.23 (including)

References