CVE-2002-0677: High severity SGI IRIX vulnerability
CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTHUNIX procedure call, which is used as a table index by the TTISCLOSE procedure.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0677?
CVE-2002-0677 is considered to have a high severity due to the potential for remote attackers to execute arbitrary code and gain privileges.
How do I fix CVE-2002-0677?
To fix CVE-2002-0677, you should apply the latest security patches provided by your software vendor that address the vulnerability.
Which software versions are affected by CVE-2002-0677?
CVE-2002-0677 affects multiple versions of Xinuos UnixWare, SGI IRIX, Compaq Tru64, HPE HP-UX, IBM AIX, and Sun Solaris/SunOS.
What type of vulnerability is CVE-2002-0677?
CVE-2002-0677 is a memory corruption vulnerability that allows overwriting of arbitrary memory locations.
Is there a workaround for CVE-2002-0677 if a patch cannot be applied immediately?
While the best mitigation for CVE-2002-0677 is a patch, you may temporarily limit access to affected services as a workaround.