Vulnerability Name: | CVE-2001-0641 (CCN-6530) | ||||||||
Assigned: | 2001-05-13 | ||||||||
Published: | 2001-05-13 | ||||||||
Updated: | 2017-10-10 | ||||||||
Summary: | Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option. | ||||||||
CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: BUGTRAQ Type: Vendor Advisory 20010513 RH 7.0:/usr/bin/man exploit: gid man + more Source: CCN Type: BugTraq Mailing List, Sun May 13 2001 - 15:17:22 CDT RH 7.0:/usr/bin/man exploit: gid man + more Source: CCN Type: BugTraq Mailing List, Mon May 14 2001 - 05:40:59 CDT Re: RH7.0: man local gid 15 (man) exploit Source: CCN Type: BugTraq Mailing List, Mon May 14 2001 - 14:21:47 CDT Re: RH7.0: man local gid 15 (man) exploit [UNCONFIRMED] Source: CCN Type: BugTraq Mailing List, May 14 2001 - 20:00:28 CDT Re: RH7.0: man local gid 15 (man) exploit Source: CCN Type: BugTraq Mailing List, Mon Jun 11 2001 - 07:40:51 CDT man 1.5h10 + man 1.5i-4 exploits Source: MITRE Type: CNA CVE-2001-0641 Source: CCN Type: RHSA-2001-069 Updated man package fixing security problems available Source: SUSE Type: UNKNOWN SuSE-SA:2001:019 Source: CCN Type: OSVDB ID: 1821 man -S Option Local Overflow Source: REDHAT Type: Patch, Vendor Advisory RHSA-2001:069 Source: BUGTRAQ Type: UNKNOWN 20010612 man 1.5h10 + man 1.5i-4 exploits Source: BID Type: Exploit, Patch, Vendor Advisory 2711 Source: CCN Type: BID-2711 Man -S Heap Overflow Vulnerability Source: CCN Type: SuSE Security Announcement SuSE-SA:2001:019 man Source: XF Type: UNKNOWN man-s-bo(6530) Source: XF Type: UNKNOWN man-s-bo(6530) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |