CVE-2002-1277: Buffer Overflow
Published Nov 12, 2002
·Updated
Buffer overflow in Window Maker (wmaker) 0.80.0 and earlier may allow remote attackers to execute arbitrary code via a certain image file that is not properly handled when Window Maker uses width and height information to allocate a buffer.
Affected Software
12 affected components
WindowMaker WindowMaker=0.20.1.3
WindowMaker WindowMaker=0.52.2
WindowMaker WindowMaker=0.53
WindowMaker WindowMaker=0.61
WindowMaker WindowMaker=0.61.1
WindowMaker WindowMaker=0.62
WindowMaker WindowMaker=0.62.1
WindowMaker WindowMaker=0.63
WindowMaker WindowMaker=0.63.1
WindowMaker WindowMaker=0.64
WindowMaker WindowMaker=0.65
WindowMaker WindowMaker=0.80
Remediation
Patch Available
Patch Available
Patch Available
Event History
Nov 12, 2002
CVE Published
05:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1277?
CVE-2002-1277 is classified as a medium severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2002-1277?
To fix CVE-2002-1277, upgrade Window Maker to a version later than 0.80.0.
3
Which versions of Window Maker are affected by CVE-2002-1277?
CVE-2002-1277 affects Window Maker versions up to and including 0.80.0.
4
What type of attack is associated with CVE-2002-1277?
CVE-2002-1277 is associated with a buffer overflow attack that could allow remote code execution.
5
Can CVE-2002-1277 be exploited remotely?
Yes, CVE-2002-1277 can be exploited by remote attackers through specially crafted image files.