Vulnerability Name: | CVE-2007-1677 (CCN-33381) |
Assigned: | 2007-03-29 |
Published: | 2007-03-29 |
Updated: | 2017-07-29 |
Summary: | Multiple buffer overflows in the ISO network protocol support in the NetBSD kernel 2.0 through 4.0_BETA2, and NetBSD-current before 20070329, allow local users to execute arbitrary code via long parameters to certain functions, as demonstrated by a long sockaddr structure argument to the clnp_route function.
|
CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)Exploitability Metrics: | Attack Vector (AV): Local Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): None | Scope: | Scope (S): Changed
| Impact Metrics: | Confidentiality (C): High Integrity (I): High Availibility (A): High |
|
CVSS v2 Severity: | 6.6 Medium (CVSS v2 Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C) 4.9 Medium (Temporal CVSS v2 Vector: AV:L/AC:M/Au:S/C:C/I:C/A:C/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Local Access Complexity (AC): Medium Authentication (Au): Single_Instance | Impact Metrics: | Confidentiality (C): Complete Integrity (I): Complete Availibility (A): Complete | 7.2 High (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C) 5.3 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Local Access Complexity (AC): Low Athentication (Au): None
| Impact Metrics: | Confidentiality (C): Complete Integrity (I): Complete Availibility (A): Complete |
|
Vulnerability Type: | CWE-Other
|
Vulnerability Consequences: | Gain Privileges |
References: | Source: NETBSD Type: UNKNOWN NetBSD-SA2007-004
Source: MITRE Type: CNA CVE-2007-1677
Source: CCN Type: NetBSD-SA2007-004 Insufficient length checking in iso(4)
Source: OSVDB Type: UNKNOWN 43596
Source: CCN Type: SECTRACK ID: 1017832 NetBSD Buffer Overflow in iso(4) Lets Local Users Gain Root Privileges
Source: CCN Type: The NetBSD Project Web site The NetBSD Project
Source: CCN Type: OSVDB ID: 43596 NetBSD Kernel ISO Network Protocol Support Multiple Function Local Privilege Escalation
Source: BID Type: UNKNOWN 23193
Source: CCN Type: BID-23193 NetBSD ISO(4) Buffer Overflow Vulnerability
Source: SECTRACK Type: UNKNOWN 1017832
Source: VUPEN Type: UNKNOWN ADV-2007-1159
Source: XF Type: UNKNOWN netbsd-clnproute-bo(33381)
Source: XF Type: UNKNOWN netbsd-clnproute-bo(33381)
|
Vulnerable Configuration: | Configuration 1: cpe:/o:navision_software:navision_financials_server:3.0:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:2.0:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:2.0.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:2.0.2:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:2.0.3:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.0.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.0.2:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.1:rc1:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.1:rc3:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:4.0:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:4.0:beta:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:4.0:beta2:*:*:*:*:*:* Configuration CCN 1: cpe:/o:netbsd:netbsd:2.0:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:2.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:2.0.3:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.0:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:2.0.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:2.0.2:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:4.0:beta:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.0.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.1:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:4.0:beta2:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:4.0:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.0.2:*:*:*:*:*:*:*OR cpe:/o:netbsd:netbsd:3.1:rc1:*:*:*:*:*:*
Denotes that component is vulnerable |
BACK |