
PROBLEM: (SSRT1-80U) (PATCH ID: OSF520CDE-001)
********
A potential security vulnerability has been discovered, where under
certain circumstances, system integrity may be compromised. This may
be in the form of improper file or privilege management. Compaq has
corrected this potential vulnerability.


PROBLEM: (94832, 94833, 94895) (PATCH ID: OSF520CDE-028)
********
A potential security vulnerability has been discovered, where under
certain circumstances, system integrity may be compromised when a
buffer overflow occurs in the CDE online help.  Buffer overflows are
sometimes exploited in an attempt to subvert the function of a
privileged program and possibly execute commands at the elevated
privileges if the program file has the setuid privilege.
HP has corrected this potential vulnerability.


PROBLEM: (94713) (PATCH ID: OSF520CDE-027)
********
A potential security vulnerability has been discovered, where under
certain circumstances, system integrity may be compromised when a
buffer overflow occurs in the CDE online help.  Buffer overflows are
sometimes exploited in an attempt to subvert the function of a
privileged program and possibly execute commands at the elevated
privileges if the program file has the setuid privilege.
HP has corrected this potential vulnerability.



