Vulnerabilities > CVE-2002-1506 - Unspecified vulnerability in Jacques Gelinas Linuxconf
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN jacques-gelinas
exploit available
Summary
Buffer overflow in Linuxconf before 1.28r4 allows local users to execute arbitrary code via a long LINUXCONF_LANG environment variable, which overflows an error string that is generated.
Vulnerable Configurations
Exploit-Db
description Linuxconf 1.1.x/1.2.x Local Environment Variable Buffer Overflow Vulnerability (2). CVE-2002-1506. Local exploit for linux platform id EDB-ID:21762 last seen 2016-02-02 modified 2002-08-28 published 2002-08-28 reporter David Endler source https://www.exploit-db.com/download/21762/ title Linuxconf 1.1.x / 1.2.x - Local Environment Variable Buffer Overflow Vulnerability 2 description Linuxconf 1.1.x/1.2.x Local Environment Variable Buffer Overflow Vulnerability (1). CVE-2002-1506. Local exploit for linux platform id EDB-ID:21761 last seen 2016-02-02 modified 2002-08-28 published 2002-08-28 reporter RaiSe source https://www.exploit-db.com/download/21761/ title Linuxconf 1.1.x / 1.2.x - Local Environment Variable Buffer Overflow Vulnerability 1 description Linuxconf 1.1.x/1.2.x Local Environment Variable Buffer Overflow Vulnerability (3). CVE-2002-1506. Local exploit for linux platform id EDB-ID:21763 last seen 2016-02-02 modified 2002-08-28 published 2002-08-28 reporter syscalls source https://www.exploit-db.com/download/21763/ title Linuxconf 1.1.x / 1.2.x - Local Environment Variable Buffer Overflow Vulnerability 3
References
- http://archives.neohapsis.com/archives/bugtraq/2002-08/0304.html
- http://archives.neohapsis.com/archives/bugtraq/2002-08/0304.html
- http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0093.html
- http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0093.html
- http://www.iss.net/security_center/static/9980.php
- http://www.iss.net/security_center/static/9980.php
- http://www.securityfocus.com/bid/5585
- http://www.securityfocus.com/bid/5585
- http://www.solucorp.qc.ca/changes.hc?projet=linuxconf&version=1.28r4
- http://www.solucorp.qc.ca/changes.hc?projet=linuxconf&version=1.28r4