Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2002-0679


Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.


Published

2002-09-05T04:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 10.0 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application caldera unixware 7.0 Yes
Application caldera unixware 7.1.0 Yes
Application caldera unixware 7.1.1 Yes
Application xi_graphics dextop 2.1 Yes
Operating System caldera openunix 8.0 Yes
Operating System compaq tru64 4.0f Yes
Operating System compaq tru64 4.0g Yes
Operating System compaq tru64 5.0a Yes
Operating System compaq tru64 5.1 Yes
Operating System compaq tru64 5.1a Yes
Operating System hp hp-ux 10.10 Yes
Operating System hp hp-ux 10.20 Yes
Operating System hp hp-ux 10.24 Yes
Operating System hp hp-ux 11.00 Yes
Operating System hp hp-ux 11.11 Yes
Operating System ibm aix 4.3.3 Yes
Operating System ibm aix 5.1 Yes
Operating System sun solaris 2.6 Yes
Operating System sun solaris 9.0 Yes
Operating System sun sunos 5.5.1 Yes
Operating System sun sunos 5.7 Yes
Operating System sun sunos 5.8 Yes

References