Multiple buffer overflows in kermit in HP-UX 10.20 and 11.00 (C-Kermit 6.0.192 and possibly other versions before 8.0) allow local users to gain privileges via long arguments to (1) ask, (2) askq, (3) define, (4) assign, and (5) getc, some of which may share the same underlying function "doask," a different vulnerability than CVE-2001-0085.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/hp/current/0044.html | |
http://www.kb.cert.org/vuls/id/971364 | Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/7627 | Vendor Advisory |
http://marc.info/?l=bugtraq&m=105190667523456&w=2 | |
http://marc.info/?l=bugtraq&m=105189670912220&w=2 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/11929 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2003-05-18 21:00
Updated : 2017-07-10 18:29
NVD link : CVE-2003-0333
Mitre link : CVE-2003-0333
JSON object : View
CWE
Products Affected
hp
- hp-ux