CVE-2002-1128: Buffer Overflow
Published Sep 24, 2002
·Updated
Buffer overflow in inc mail utility for Compaq Tru64/OSF1 3.x allows local users to execute arbitrary code via a long MH environment variable.
Affected Software
12 affected components
Digital Osf 1=3.0
Digital Osf 1=3.0b
Digital Osf 1=3.2
Digital Osf 1=3.2b
Digital Osf 1=3.2c
Digital Osf 1=3.2d
Digital Osf 1=3.2de1
Digital Osf 1=3.2de2
Digital Osf 1=3.2f
Digital Osf 1=3.2g
Digital Osf 1=4.0
Digital Ultrix=3.0
Remediation
Event History
Sep 24, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1128?
CVE-2002-1128 is classified as a high severity vulnerability due to its potential to allow local users to execute arbitrary code.
2
How do I fix CVE-2002-1128?
To fix CVE-2002-1128, ensure that you apply the latest security patches provided by Digital for affected versions of Tru64/OSF1 and Ultrix.
3
Who is affected by CVE-2002-1128?
CVE-2002-1128 affects local users of Compaq Tru64/OSF1 versions 3.x and Digital Ultrix 3.0.
4
What type of vulnerability is CVE-2002-1128?
CVE-2002-1128 is a buffer overflow vulnerability in the inc mail utility.
5
Can CVE-2002-1128 be exploited remotely?
CVE-2002-1128 cannot be exploited remotely as it requires local access to the system.