The net.init rc script in HP-UX 11.00 (S008net.init) allows local users to overwrite arbitrary files via a symlink attack that points from /tmp/stcp.conf to the targeted file.
Classification
Location:
Local Access Required
Attack Type:
Race Condition
Impact:
Loss of Integrity
Solution:
Patch / RCS
Exploit:
Exploit Public
Disclosure:
Vendor Verified,
Third-party Verified
OSVDB:
Authentication Required
Solution
Currently, there are no known workarounds or upgrades to correct this issue. However, HP has released a patch to address this vulnerability.