Vulnerabilities > CVE-2002-0740 - Buffer Overflow vulnerability in SLRNPull Spool Directory Command Line Parameter

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
slrn-development-team
exploit available

Summary

Buffer overflow in slrnpull for the SLRN package, when installed setuid or setgid, allows local users to gain privileges via a long -d (SPOOLDIR) argument.

Exploit-Db

descriptionSLRNPull 0.9.6 Spool Directory Command Line Parameter Buffer Overflow Vulnerability. CVE-2002-0740. Local exploit for unix platform
idEDB-ID:21408
last seen2016-02-02
modified2002-04-22
published2002-04-22
reporterzillion
sourcehttps://www.exploit-db.com/download/21408/
titleSLRNPull 0.9.6 Spool Directory Command Line Parameter Buffer Overflow Vulnerability