CVE-2002-1414: Buffer Overflow
Published Apr 11, 2003
·Updated
Buffer overflow in qmailadmin allows local users to gain privileges via a long QMAILADMINTEMPLATEDIR environment variable.
Affected Software
6 affected components
Inter7 Qmailadmin=1.0.2
Inter7 Qmailadmin=1.0.5
Inter7 Qmailadmin=1.0.1
Inter7 Qmailadmin=1.0
Inter7 Qmailadmin=1.0.3
Inter7 Qmailadmin=1.0.4
Remediation
Patch Available
Event History
Apr 11, 2003
CVE Published
04:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1414?
CVE-2002-1414 is classified as a high-severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2002-1414?
To mitigate CVE-2002-1414, users should upgrade to a patched version of Qmailadmin, specifically versions later than 1.0.5.
3
Who is affected by CVE-2002-1414?
CVE-2002-1414 affects local users of Inter7 Qmailadmin versions 1.0.0 to 1.0.5.
4
What type of vulnerability is CVE-2002-1414?
CVE-2002-1414 is a buffer overflow vulnerability allowing privilege escalation via a long environment variable.
5
Can CVE-2002-1414 be exploited remotely?
CVE-2002-1414 cannot be exploited remotely as it requires local user access to the affected system.