Vulnerability Name:
CVE-2001-0353 (CCN-6718)
Assigned:
2001-01-19
Published:
2001-01-19
Updated:
2018-10-30
Summary:
Buffer overflow in the line printer daemon (in.lpd) for Solaris 8 and earlier allows local and remote attackers to gain root privileges via a "transfer job" routine.
CVSS v3 Severity:
9.3 Critical
(CCN CVSS v3.1 Vector:
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
)
Exploitability Metrics:
Attack Vector (AV):
Local
Attack Complexity (AC):
Low
Privileges Required (PR):
None
User Interaction (UI):
None
Scope:
Scope (S):
Changed
Impact Metrics:
Confidentiality (C):
High
Integrity (I):
High
Availibility (A):
High
CVSS v2 Severity:
10.0 High
(CVSS v2 Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C
)
Exploitability Metrics:
Access Vector (AV):
Network
Access Complexity (AC):
Low
Authentication (Au):
None
Impact Metrics:
Confidentiality (C):
Complete
Integrity (I):
Complete
Availibility (A):
Complete
7.2 High
(CCN CVSS v2 Vector:
AV:L/AC:L/Au:N/C:C/I:C/A:C
)
Exploitability Metrics:
Access Vector (AV):
Local
Access Complexity (AC):
Low
Athentication (Au):
None
Impact Metrics:
Confidentiality (C):
Complete
Integrity (I):
Complete
Availibility (A):
Complete
Vulnerability Type:
CWE-Other
Vulnerability Consequences:
Gain Access
References:
Source: CCN
Type: SGI Security Advisory 20011003-01-P
IRIX Printing System Vulnerabilities
Source: MITRE
Type: CNA
CVE-2001-0353
Source: SUN
Type: UNKNOWN
00206
Source: CCN
Type: Sun Microsystems, Inc. Security Bulletin #00206
in.lpd
Source: CCN
Type: Sun Microsystems, Inc. Web site
SUNSOLVE ONLINE
Source: CCN
Type: CERT Advisory CA-2001-15
Buffer Overflow In Sun Solaris in.lpd Print Daemon
Source: CERT
Type: US Government Resource
CA-2001-15
Source: CCN
Type: CIAC Information Bulletin L-138
Sun in.lpd Vulnerability
Source: CCN
Type: Internet Security Systems Security Alert #80
Remote Buffer Overflow Vulnerability in Solaris Print Protocol Daemon
Source: CCN
Type: US-CERT VU#484011
Solaris Line Printer Daemon (in.lpd) vulnerable to buffer overflow via transfer job routine
Source: CCN
Type: OSVDB ID: 1875
lpd Transfer Job Routine Remote Buffer Overflow
Source: BID
Type: UNKNOWN
2894
Source: CCN
Type: BID-2894
Multiple Vendor lpd Remote Buffer Overflow Vulnerability
Source: ISS
Type: Patch, Vendor Advisory
20010619 Remote Buffer Overflow Vulnerability in Solaris Print Protocol Daemon
Source: XF
Type: UNKNOWN
solaris-lpd-bo(6718)
Source: XF
Type: UNKNOWN
solaris-lpd-bo(6718)
Vulnerable Configuration:
Configuration 1
:
cpe:/o:sun:sunos:5.6:*:*:*:*:*:*:*
OR
cpe:/o:sun:solaris:7.0:*:x86:*:*:*:*:*
OR
cpe:/o:sun:solaris:8.0:*:x86:*:*:*:*:*
OR
cpe:/o:sun:sunos:-:*:*:*:*:*:*:*
OR
cpe:/o:sun:sunos:5.7:*:*:*:*:*:*:*
OR
cpe:/o:sun:sunos:5.8:*:*:*:*:*:*:*
Configuration CCN 1
:
cpe:/o:sun:sunos:5.6:*:*:*:*:*:*:*
OR
cpe:/o:sun:solaris:2.6::x86:*:*:*:*:*
OR
cpe:/o:sun:solaris:7.0:*:x86:*:*:*:*:*
OR
cpe:/o:sun:sunos:5.8:*:*:*:*:*:*:*
OR
cpe:/o:sun:solaris:8:*:x86:*:*:*:*:*
OR
cpe:/o:sun:sunos:5.7:*:*:*:*:*:*:*
AND
cpe:/o:sgi:irix:6.5:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.1:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.10f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.10m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.11f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.11m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.12f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.12m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.13f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.13m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.2f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.2m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.3f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.3m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.4f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.4m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.5f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.5m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.6f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.6m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.7f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.7m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.8f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.8m:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.9f:*:*:*:*:*:*:*
OR
cpe:/o:sgi:irix:6.5.9m:*:*:*:*:*:*:*
Denotes that component is vulnerable
BACK
sun
solaris 2.6
sun
solaris 7.0
sun
solaris 8.0
sun
sunos -
sun
sunos 5.7
sun
sunos 5.8
sun
solaris 2.6
sun
solaris 2.6
sun
solaris 7.0
sun
solaris 8
sun
solaris 8
sun
solaris 7.0
sgi
irix 6.5
sgi
irix 6.5.1
sgi
irix 6.5.10f
sgi
irix 6.5.10m
sgi
irix 6.5.11f
sgi
irix 6.5.11m
sgi
irix 6.5.12f
sgi
irix 6.5.12m
sgi
irix 6.5.13f
sgi
irix 6.5.13m
sgi
irix 6.5.2f
sgi
irix 6.5.2m
sgi
irix 6.5.3f
sgi
irix 6.5.3m
sgi
irix 6.5.4f
sgi
irix 6.5.4m
sgi
irix 6.5.5f
sgi
irix 6.5.5m
sgi
irix 6.5.6f
sgi
irix 6.5.6m
sgi
irix 6.5.7f
sgi
irix 6.5.7m
sgi
irix 6.5.8f
sgi
irix 6.5.8m
sgi
irix 6.5.9f
sgi
irix 6.5.9m