CVE-2002-0905: Buffer Overflow
Published Aug 31, 2002
·Updated
Buffer overflow in sqlexec for Informix SE-7.25 allows local users to gain root privileges via a long INFORMIXDIR environment variable.
Affected Software
3 affected components
IBM Informix=7.25_.uc1_se
IBM Informix=7.25_.uc2_se
IBM Informix=7.25_.uc3_se
Event History
Aug 31, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0905?
CVE-2002-0905 has a high severity rating due to the potential for local users to gain root privileges.
2
How do I fix CVE-2002-0905?
To fix CVE-2002-0905, you should limit the length of the INFORMIXDIR environment variable or apply any available patches from IBM.
3
Who is affected by CVE-2002-0905?
CVE-2002-0905 affects local users of IBM Informix versions 7.25_.uc1_se, 7.25_.uc2_se, and 7.25_.uc3_se.
4
What type of vulnerability is CVE-2002-0905?
CVE-2002-0905 is a buffer overflow vulnerability.
5
When was CVE-2002-0905 reported?
CVE-2002-0905 was reported in May 2002.