First published: Wed Dec 11 2002(Updated: )
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SGI IRIX | =6.5.6 | |
XFree86 X Server | =3.3.4 | |
SGI IRIX | =6.5.1 | |
SGI IRIX | =6.5.10 | |
SGI IRIX | =6.5.12 | |
SGI IRIX | =6.5.9 | |
XFree86 X Server | =3.3 | |
SGI IRIX | =6.5.3 | |
SGI IRIX | =6.5.8 | |
SGI IRIX | =6.5.5 | |
XFree86 X Server | =3.3.2 | |
SGI IRIX | =6.5.4 | |
XFree86 X Server | =3.3.5 | |
SGI IRIX | =6.5.11 | |
SGI IRIX | =6.5.2 | |
SGI IRIX | =6.5 | |
SGI IRIX | =6.5.7 | |
XFree86 X Server | =3.3.3 | |
SGI IRIX | =6.5.13 | |
HPE HP-UX | =11.11 | |
Oracle Solaris SPARC | =2.5.1 | |
Oracle Solaris SPARC | =2.5.1 | |
HPE HP-UX | =11.04 | |
Sun SunOS | =5.7 | |
Sun SunOS | =5.8 | |
HPE HP-UX | =11.00 | |
HPE HP-UX | =10.24 | |
Oracle Solaris SPARC | =7.0 | |
HPE HP-UX | =11.22 | |
Oracle Solaris SPARC | =9.0 | |
Sun SunOS | =5.5.1 | |
HPE HP-UX | =10.20 | |
HPE HP-UX | =10.10 | |
Oracle Solaris SPARC | =9.0-x86_update_2 | |
Oracle Solaris SPARC | =2.6 | |
Oracle Solaris SPARC | =8.0 | |
Sun SunOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1317 is classified as a medium to high severity vulnerability due to potential denial of service and execution of arbitrary code.
To fix CVE-2002-1317, update the affected XFS font server or apply the latest patches provided by your operating system vendor.
CVE-2002-1317 affects multiple versions of the XFS font server and various SGI IRIX installations.
Yes, CVE-2002-1317 can allow remote attackers to execute arbitrary code on vulnerable systems.
While CVE-2002-1317 is an older vulnerability, systems running unpatched versions of the affected software may still be at risk.