First published: Mon Oct 08 2001(Updated: )
Buffer overflow in Progress database 8.3D and 9.1C allows local users to execute arbitrary code via long entries in files that are specified by the (1) PROMSGS or (2) PROTERMCAP environment variables.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Progress Progress | =8.3d | |
Progress Progress | =9.1c |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1128 has a severity rating of medium due to the potential for local users to execute arbitrary code.
To fix CVE-2001-1128, upgrade to a non-vulnerable version of Progress database beyond 9.1C.
CVE-2001-1128 affects users of Progress database versions 8.3D and 9.1C.
CVE-2001-1128 is caused by a buffer overflow due to improper handling of long entries in certain environment variables.
CVE-2001-1128 can be exploited by local users with minimal effort, making it important to address.