Vulnerability Name: | CVE-2003-0033 (CCN-10956) | ||||||||||||
Assigned: | 2003-03-03 | ||||||||||||
Published: | 2003-03-03 | ||||||||||||
Updated: | 2016-10-18 | ||||||||||||
Summary: | Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmented RPC packets. | ||||||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: CCN Type: BugTraq Mailing List, Mon Mar 03 2003 - 17:23:22 CST [Snort-2003-001] Buffer overflow in Snort RPC preprocessor (fwd) Source: MITRE Type: CNA CVE-2003-0033 Source: BUGTRAQ Type: UNKNOWN 20030303 Snort RPC Vulnerability (fwd) Source: GENTOO Type: UNKNOWN GLSA-200303-6.1 Source: GENTOO Type: UNKNOWN GLSA-200304-06 Source: CCN Type: CERT Advisory CA-2003-13 Multiple Vulnerabilities in Snort Preprocessors Source: CERT Type: US Government Resource CA-2003-13 Source: CCN Type: CIAC Information Bulletin N-049 Snort RPC Preprocessing Vulnerability Source: DEBIAN Type: UNKNOWN DSA-297 Source: DEBIAN Type: DSA 297-1 snort -- integer overflow, buffer overflow Source: DEBIAN Type: DSA-297 snort -- integer overflow Source: ISS Type: Patch, Vendor Advisory 20030303 Snort RPC Preprocessing Vulnerability Source: XF Type: Patch, Vendor Advisory snort-rpc-fragment-bo(10956) Source: CCN Type: US-CERT VU#916785 Buffer overflow in Snort RPC preprocessor Source: CERT-VN Type: Third Party Advisory, US Government Resource VU#916785 Source: ENGARDE Type: UNKNOWN ESA-20030307-007 Source: CCN Type: Gentoo Linux Security Announcement 200303-6.1 snort -- buffer overflow Source: CCN Type: EnGarde Secure Linux Security Advisory ESA-20030307-007 snort -- RPC preprocessor buffer overflow. Source: CCN Type: Gentoo Linux Security Announcement 200304-05 snort -- Multiple Vulnerabilities in Snort Preprocessors Source: CCN Type: Gentoo Linux Security Announcement 200304-06 snort Multiple Vulnerabilities in Snort Preprocessors Source: MANDRAKE Type: UNKNOWN MDKSA-2003:029 Source: OSVDB Type: UNKNOWN 4418 Source: CCN Type: OSVDB ID: 4418 Snort RPC Decode Module Overflow Source: BID Type: Patch, Vendor Advisory 6963 Source: CCN Type: BID-6963 Snort RPC Preprocessor Fragment Reassembly Buffer Overflow Vulnerability Source: CCN Type: SmoothWall.org Web site Get SmoothWall Source: CCN Type: Snort.org Web site Snort.org Source: XF Type: UNKNOWN snort-rpc-fragment-bo(10956) | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
Oval Definitions | |||||||||||||
| |||||||||||||
BACK |