The HP-UX 'ipcs' utility is prone to a locally exploitable buffer-overflow condition because the software fails to properly bounds-check core filenames. This utility may be installed setgid 'sys' on vulnerable systems; attackers may exploit this issue to gain these privileges. This issue was reported with 'ipcs' on HP-UX 11.00; other versions are also likely affected.
The HP-UX 'ipcs' utility is prone to a locally exploitable buffer-overflow condition because the software fails to properly bounds-check core filenames. This utility may be installed setgid 'sys' on vulnerable systems; attackers may exploit this issue to gain these privileges. This issue was reported with 'ipcs' on HP-UX 11.00; other versions are also likely affected.