Multiple buffer overflows in Advanced Maryland Automatic Network Disk Archiver (AMANDA) 2.3.0.4 allow (1) remote attackers to execute arbitrary code via long commands to the amindexd daemon, or certain local users to execute arbitrary code via long command line arguments to the programs (2) amcheck, (3) amgetidx, (4) amtrmidx, (5) createindex-dump, or (6) createindex-gnutar.
References
Link | Resource |
---|---|
http://www.iss.net/security_center/static/9182.php | Patch Vendor Advisory |
http://www.iss.net/security_center/static/9181.php | Patch Vendor Advisory |
http://www.securityfocus.com/bid/4836 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/4840 | Patch Vendor Advisory |
http://online.securityfocus.com/archive/1/274215 |
Configurations
Information
Published : 2002-10-03 21:00
Updated : 2008-09-05 13:29
NVD link : CVE-2002-0901
Mitre link : CVE-2002-0901
JSON object : View
CWE
Products Affected
amanda
- amanda