CVE-2003-1356 describes an "incorrect file handling" vulnerability within the 'sort' utility in HP-UX versions 10.01 through 10.20 and 11.00 through 11.11. This flaw allows attackers to achieve unauthorized access or a denial of service through unspecified vectors. With a CVSS score of 7.2 (AV:L/AC:L/Au:N/C:C/I:C/A:C), it indicates high impact on confidentiality, integrity, and availability, requiring local access and low attack complexity. There is no evidence of active exploitation, publicly available exploit code, or inclusion in CISA's KEV catalog, though it has garnered significant community discussion with 10 mentions.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.01CPE matchmatch criteria | cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:* | ||
10.10CPE matchmatch criteria | cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:* | ||
10.20CPE matchmatch criteria | cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:* | ||
11.00CPE matchmatch criteria | cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:* | ||
11.04CPE matchmatch criteria | cpe:2.3:o:hp:hp-ux:11.04:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.