📦

tru64

Vendor: compaq

Actively Exploited 0 CISA KEV List
PoC / Exploits 11 Code Available
Total RCEs 0 Remote Access
Total CVEs 24 Total Indexed
Avg. EPSS 2.67% Exploit Prob.
Latest CVE CVE-2008-4414 Nov 07

Security Vulnerability Index

Page 2 / 3
10.0 CVSS

Unspecified vulnerability in CDE dtmailpr of HP Tru64 4.0F through 5.1B allows local users to gain privileges via unknown attack vectors. NOTE: due to lack of details in the vendor advisory, it is not clear whether this is the same issue as CVE-1999-0840.

EPSS: 2.29%
7.5 CVSS

ssh on HP Tru64 UNIX 5.1B and 5.1A does not properly handle RSA signatures when digital certificates and RSA keys are used, which could allow local and remote attackers to gain privileges.

EPSS: 0.85%
7.2 CVSS

The (1) dupatch and (2) setld utilities in HP Tru64 UNIX 5.1B PK1 and earlier allows local users to overwrite files and possibly gain root privileges via a symlink attack.

EPSS: 0.47%
5.0 CVSS

Unknown vulnerability or vulnerabilities in TCP/IP component for HP Tru64 UNIX 4.0f, 4.0g, and 5.0a allows remote attackers to cause a denial of service.

EPSS: 2.25%
5.0 CVSS

Unknown vulnerability in the ARP component for HP Tru64 UNIX 4.0f, 4.0g, and 5.0a allows remote attackers to "take over packets destined for another host" and cause a denial of service.

EPSS: 2.25%
5.0 CVSS

Unknown vulnerability in inetd in HP Tru64 Unix 4.0f through 5.1a allows remote attackers to cause a denial of service via unknown attack vectors.

EPSS: 3.07%
5.0 CVSS
CVE-2002-2071
Exploit Found

Compaq Tru64 4.0 d allows remote attackers to cause a denial of service in (1) telnet, (2) FTP, (3) ypbind, (4) rpc.lockd, (5) snmp, (6) ttdbserverd, and possibly other services via a TCP SYN scan, as demonstrated using nmap.

EPSS: 3.40%
7.2 CVSS

Multiple buffer overflows in HP Tru64 UNIX 5.x allow local users to execute arbitrary code via (1) a long -contextDir argument to dtaction, (2) a long -p argument to dtprintinfo, (3) a long -customization argument to dxterm, or (4) a long DISPLAY environment variable to dtterm.

EPSS: 1.49%
5.0 CVSS

portmapper in Compaq Tru64 4.0G and 5.0A allows remote attackers to cause a denial of service via a flood of packets.

EPSS: 1.24%
5.0 CVSS

ypbind in Compaq Tru64 4.0F, 4.0G, 5.0A, 5.1 and 5.1A allows remote attackers to cause the process to core dump via certain network packets generated by nmap.

EPSS: 1.19%