CVE-2001-1442: Buffer Overflow
Published Apr 21, 2001
·Updated
Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privileges via a long -c command line argument.
Affected Software
6 affected components
ISC inn=2.2
ISC inn=2.2.2
ISC inn=2.0
ISC inn=2.1
ISC inn=2.2.1
ISC inn=2.2.3
Remediation
Patch Available
Patch Available
Event History
Apr 21, 2001
CVE Published
04:00 AM
Apr 21, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1442?
CVE-2001-1442 is classified as a medium severity vulnerability due to the possibility of privilege escalation for local users.
2
How do I fix CVE-2001-1442?
To address CVE-2001-1442, upgrade ISC InterNetNews to version 2.3.0 or later.
3
Who is affected by CVE-2001-1442?
CVE-2001-1442 affects local users in the 'news' group running vulnerable versions of ISC INN prior to 2.3.0.
4
What type of vulnerability is CVE-2001-1442?
CVE-2001-1442 is a buffer overflow vulnerability that can lead to privilege escalation.
5
What versions of ISC INN are vulnerable to CVE-2001-1442?
Vulnerable versions of ISC INN include 2.0, 2.1, 2.2, 2.2.1, 2.2.2, and 2.2.3.