PT-2002-2329 · Hewlett Packard · Hp Tru64 Unix

Published

2002-09-02

·

Updated

2017-07-11

·

CVE-2002-1604

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions HP Tru64 UNIX (affected versions not specified)
Description The issue is related to multiple buffer overflows in HP Tru64 UNIX, which can be exploited by local and possibly remote attackers to execute arbitrary code. This can be achieved by setting a long NLSPATH environment variable in various system components, including csh, dtsession, dxsysinfo, imapd, inc, uucp, uux, rdist, and deliver.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-1604

Affected Products

Hp Tru64 Unix