First published: Sat Aug 31 2002(Updated: )
Multiple buffer overflows in Advanced Maryland Automatic Network Disk Archiver (AMANDA) 2.3.0.4 allow (1) remote attackers to execute arbitrary code via long commands to the amindexd daemon, or certain local users to execute arbitrary code via long command line arguments to the programs (2) amcheck, (3) amgetidx, (4) amtrmidx, (5) createindex-dump, or (6) createindex-gnutar.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zmanda Amanda | =2.3.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0901 is considered a high-severity vulnerability due to its potential for remote code execution.
To address CVE-2002-0901, update the AMANDA software to a version that is not vulnerable, ideally beyond 2.3.0.4.
Remote attackers and certain local users are at risk from CVE-2002-0901 due to its buffer overflow nature.
CVE-2002-0901 can allow attackers to execute arbitrary code, potentially compromising system integrity and security.
CVE-2002-0901 specifically affects AMANDA version 2.3.0.4.