Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2003-0630


Multiple buffer overflows in the atari800.svgalib setuid program of the Atari 800 emulator (atari800) before 1.2.2 allow local users to gain privileges via long command line arguments, as demonstrated with the -osa_rom argument.


Published

2003-10-20T04:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 7.2 (HIGH)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

3.9

Impact Score

10.0

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System atari800 atari800 1.0.1 Yes
Operating System atari800 atari800 1.0.2 Yes
Operating System atari800 atari800 1.0.3 Yes
Operating System atari800 atari800 1.0.4 Yes
Operating System atari800 atari800 1.0.5 Yes
Operating System atari800 atari800 1.0.6 Yes
Operating System atari800 atari800 1.0.7 Yes
Operating System atari800 atari800 1.2 Yes
Operating System atari800 atari800 1.2.1 Yes
Operating System atari800 atari800 1.2.1_pre0 Yes
Operating System atari800 atari800 1.2.2 Yes

References