Vulnerability Name: | CVE-2002-1500 (CCN-10114) |
Assigned: | 2002-09-17 |
Published: | 2002-09-17 |
Updated: | 2008-09-05 |
Summary: | Buffer overflow in (1) mrinfo, (2) mtrace, and (3) pppd in NetBSD 1.4.x through 1.6 allows local users to gain privileges by executing the programs after filling the file descriptor tables, which produces file descriptors larger than FD_SETSIZE, which are not checked by FD_SET().
|
CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)Exploitability Metrics: | Attack Vector (AV): Local Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): None | Scope: | Scope (S): Changed
| Impact Metrics: | Confidentiality (C): High Integrity (I): High Availibility (A): High |
|
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)Exploitability Metrics: | Access Vector (AV): Local Access Complexity (AC): Low Authentication (Au): None | Impact Metrics: | Confidentiality (C): Complete Integrity (I): Complete Availibility (A): Complete | 7.2 High (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)Exploitability Metrics: | Access Vector (AV): Local Access Complexity (AC): Low Athentication (Au): None
| Impact Metrics: | Confidentiality (C): Complete Integrity (I): Complete Availibility (A): Complete |
|
Vulnerability Type: | CWE-Other
|
Vulnerability Consequences: | Gain Privileges |
References: | Source: NETBSD Type: UNKNOWN NetBSD-SA2002-014
Source: CCN Type: Full-Disclosure Mailing List, Mon Sep 16 2002 - 21:39:49 CDT fd_set overrun in mbone tools and pppd
Source: MITRE Type: CNA CVE-2002-1500
Source: XF Type: Patch, Vendor Advisory netbsd-fdset-bo(10114)
Source: CCN Type: OSVDB ID: 7567 NetBSD mtrace FD_SET File Descriptor Overflow
Source: CCN Type: OSVDB ID: 7568 NetBSD pppd FD_SET File Descriptor Overflow
Source: CCN Type: OSVDB ID: 7569 NetBSD mrinfo FD_SET File Descriptor Overflow
Source: BID Type: Patch, Vendor Advisory 5727
Source: CCN Type: BID-5727 NetBSD IPv4 Multicast Tools Buffer Overflow Vulnerability
Source: XF Type: UNKNOWN netbsd-fdset-bo(10114)
|
Vulnerable Configuration: | Configuration 1: cpe:/o:netbsd:netbsd:1.4:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4:*:alpha:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4:*:arm32:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4:*:sparc:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4:*:x86:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.1:*:alpha:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.1:*:arm32:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.1:*:sh3:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.1:*:sparc:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.1:*:x86:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.2:*:alpha:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.2:*:arm32:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.2:*:sparc:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.2:*:x86:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.3:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5:*:sh3:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5:*:x86:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5.2:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5.3:*:*:*:*:*:*:* Configuration CCN 1: cpe:/o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.4.3:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5.2:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:1.5.3:*:*:*:*:*:*:*
Denotes that component is vulnerable |
BACK |