CVE-2002-1194: Buffer Overflow
Published Oct 15, 2002
·Updated
Buffer overflow in talkd on NetBSD 1.6 and earlier, and possibly other operating systems, may allow remote attackers to execute arbitrary code via a long inbound message.
Affected Software
5 affected components
NetBSD NetBSD=1.5
NetBSD NetBSD=1.5.1
NetBSD NetBSD=1.5.2
NetBSD NetBSD=1.5.3
NetBSD NetBSD=1.6
Event History
Oct 15, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1194?
CVE-2002-1194 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2002-1194?
To fix CVE-2002-1194, upgrade to a version of NetBSD that is not affected, specifically version 1.6 or later.
3
What systems are affected by CVE-2002-1194?
CVE-2002-1194 affects NetBSD versions 1.5, 1.5.1, 1.5.2, 1.5.3, and 1.6.
4
Can CVE-2002-1194 be exploited remotely?
Yes, CVE-2002-1194 can be exploited remotely through the talkd service by sending a specially crafted long message.
5
What type of vulnerability is CVE-2002-1194?
CVE-2002-1194 is a buffer overflow vulnerability.