Vulnerabilities > CVE-2002-0679

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
caldera
xi-graphics
compaq
hp
ibm
sun
critical

Summary

Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.

Oval

  • accepted2010-09-20T04:00:17.742-04:00
    classvulnerability
    contributors
    • nameDavid Proulx
      organizationThe MITRE Corporation
    • nameTodd Dolinsky
      organizationOpsware, Inc.
    • nameJonathan Baker
      organizationThe MITRE Corporation
    descriptionBuffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.
    familyunix
    idoval:org.mitre.oval:def:177
    statusaccepted
    submitted2003-01-29T12:00:00.000-04:00
    titleSolaris 7 CDE ToolTalk Database Heap Corruption Vulnerability
    version37
  • accepted2010-09-20T04:00:18.506-04:00
    classvulnerability
    contributors
    • nameDavid Proulx
      organizationThe MITRE Corporation
    • nameTodd Dolinsky
      organizationOpsware, Inc.
    • nameJonathan Baker
      organizationThe MITRE Corporation
    descriptionBuffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.
    familyunix
    idoval:org.mitre.oval:def:192
    statusaccepted
    submitted2003-01-29T12:00:00.000-04:00
    titleSolaris 8 CDE ToolTalk Database Heap Corruption Vulnerability
    version37