CVE-2002-0816: Buffer Overflow
Published Aug 12, 2002
·Updated
Buffer overflow in su in Tru64 Unix 5.x allows local users to gain root privileges via a long username and argument.
Affected Software
6 affected components
Compaq Tru64=4.0f
Compaq Tru64=4.0g
Compaq Tru64=5.0
Compaq Tru64=5.0a
Compaq Tru64=5.1
Compaq Tru64=5.1a
Event History
Aug 12, 2002
CVE Published
04:00 AM
Apr 2, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0816?
CVE-2002-0816 is considered a high severity vulnerability due to its potential to allow local users to gain root privileges.
2
How do I fix CVE-2002-0816?
To fix CVE-2002-0816, you should apply the available patches for Tru64 Unix versions that are affected.
3
Who is affected by CVE-2002-0816?
CVE-2002-0816 affects local users on Tru64 Unix versions 4.0f, 4.0g, 5.0, 5.0a, and 5.1.
4
What type of vulnerability is CVE-2002-0816?
CVE-2002-0816 is a buffer overflow vulnerability in the 'su' command allowing privilege escalation.
5
Is there a workaround for CVE-2002-0816?
A possible workaround for CVE-2002-0816 is to restrict access to the 'su' command until the patch is applied.