Vulnerability Note VU#119952

HP-UX Support Tools Manager vulnerable to denial of service

Original Release date: 30 Jan 2001 | Last revised: 29 Mar 2001

Overview

There is a vulnerability in the Hewlett-Packard Support Tools Manager that allows a local user to create a denial-of-service condition.

Description

The Hewlett-Packard Support Tools is a collection of diagnostic tools that allow operators of HP-UX systems to test and diagnose hardware configurations. On January 18, 2001, HP announced a vulnerability in the HP Support Tools Manager product that allows a local user to create a denial-of-service condition. This vulnerability is reported to affect HP9000 Series 700 and 800 systems running HP-UX versions 11.11, 11.00, and 10.20.

Impact

According to HP's report, successful exploitation of this vulnerability could result in a denial-of-service attack.

Solution

HP has provided patches for each of the affected versions; please see the vendor section of this document for further details.

Systems Affected (Learn More)

VendorStatusDate NotifiedDate Updated
Hewlett PackardAffected-22 Mar 2001
If you are a vendor and your product is affected, let us know.

CVSS Metrics (Learn More)

Group Score Vector
Base N/A N/A
Temporal N/A N/A
Environmental N/A N/A

References

Credit

This document was written by Jeffrey P. Lanza.

Other Information

  • CVE IDs: CAN-2001-0219
  • Date Public: 18 Jan 2001
  • Date First Published: 30 Jan 2001
  • Date Last Updated: 29 Mar 2001
  • Severity Metric: 0.25
  • Document Revision: 14

Feedback

If you have feedback, comments, or additional information about this vulnerability, please send us email.