Vulnerability Name: | CVE-2002-0816 (CCN-9640) | ||||||||
Assigned: | 2002-07-19 | ||||||||
Published: | 2002-07-19 | ||||||||
Updated: | 2016-10-18 | ||||||||
Summary: | Buffer overflow in su in Tru64 Unix 5.x allows local users to gain root privileges via a long username and argument. | ||||||||
CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Thu Jul 18 2002 - 22:02:43 CDT tru64 proof of concept /bin/su non-exec bypass Source: COMPAQ Type: UNKNOWN SSRT2257 Source: CCN Type: Compaq SECURITY BULLETIN SRB0039W HP Tru64 UNIX - Potential Buffer Overflows & SSRT2229 Potential Denial of Service Source: MITRE Type: CNA CVE-2002-0816 Source: BUGTRAQ Type: UNKNOWN 20020719 tru64 proof of concept /bin/su non-exec bypass Source: XF Type: UNKNOWN tru64-su-bo(9640) Source: CCN Type: US-CERT VU#229867 HP Tru64 UNIX su command vulnerable to buffer overflow Source: CERT-VN Type: US Government Resource VU#229867 Source: CCN Type: OSVDB ID: 5076 HP Tru64 UNIX su Local Overflow Source: BID Type: UNKNOWN 5272 Source: CCN Type: BID-5272 Tru64 SU Command Line Buffer Overflow Vulnerability Source: XF Type: UNKNOWN tru64-su-bo(9640) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |