Vulnerability Name: | CVE-2002-1247 (CCN-10592) | ||||||||
Assigned: | 2002-11-11 | ||||||||
Published: | 2002-11-11 | ||||||||
Updated: | 2016-10-18 | ||||||||
Summary: | Buffer overflow in LISa allows local users to gain access to a raw socket via a long LOGNAME environment variable for the resLISa daemon. | ||||||||
CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: CCN Type: Gentoo Linux Security Announcement 200211-004 rlogin.protocol and telnet.protocol URL KIO Vulnerability resLISa / LISa Vulnerabilities Source: VULNWATCH Type: UNKNOWN 20021111 iDEFENSE Security Advisory 11.11.02: Buffer Overflow in KDE resLISa Source: MITRE Type: CNA CVE-2002-1247 Source: CCN Type: LISa Web site LISa - LAN Information Server Source: BUGTRAQ Type: UNKNOWN 20021111 iDEFENSE Security Advisory 11.11.02: Buffer Overflow in KDE resLISa Source: BUGTRAQ Type: UNKNOWN 20021112 KDE Security Advisory: resLISa / LISa Vulnerabilities Source: BUGTRAQ Type: UNKNOWN 20021114 GLSA: kdelibs Source: CCN Type: RHSA-2002-220 Updated KDE packages fix security issues Source: CCN Type: RHSA-2002-221 kdelibs security update Source: CCN Type: CIAC Information Bulletin N-020 Red Hat Multiple Vulnerabilities in KDE Source: CIAC Type: UNKNOWN N-020 Source: DEBIAN Type: Patch, Vendor Advisory DSA-193 Source: DEBIAN Type: DSA-193 kdenetwork -- buffer overflow Source: MISC Type: UNKNOWN http://www.idefense.com/advisory/11.11.02.txt Source: XF Type: Vendor Advisory kde-kdenetwork-reslisa-bo(10592) Source: CCN Type: KDE Web site Getting KDE Source: CCN Type: KDE Security Advisory 2002-11-11 resLISa / LISa Vulnerabilities Source: MANDRAKE Type: UNKNOWN MDKSA-2002:080 Source: REDHAT Type: UNKNOWN RHSA-2002:220 Source: BID Type: Patch, Vendor Advisory 6157 Source: CCN Type: BID-6157 KDE Network RESLISA LOGNAME Local Buffer Overflow Vulnerability Source: XF Type: UNKNOWN kde-kdenetwork-reslisa-bo(10592) Source: CCN Type: iDEFENSE Security Advisory 11.11.02 Buffer Overflow in KDE resLISa | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: ![]() | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |