First published: Sat Apr 21 2001(Updated: )
Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privileges via a long -c command line argument.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ISC INN | =2.2 | |
ISC INN | =2.2.2 | |
ISC INN | =2.0 | |
ISC INN | =2.1 | |
ISC INN | =2.2.1 | |
ISC INN | =2.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1442 is classified as a medium severity vulnerability due to the possibility of privilege escalation for local users.
To address CVE-2001-1442, upgrade ISC InterNetNews to version 2.3.0 or later.
CVE-2001-1442 affects local users in the 'news' group running vulnerable versions of ISC INN prior to 2.3.0.
CVE-2001-1442 is a buffer overflow vulnerability that can lead to privilege escalation.
Vulnerable versions of ISC INN include 2.0, 2.1, 2.2, 2.2.1, 2.2.2, and 2.2.3.