CVE-2002-1447: Buffer Overflow
Published May 28, 2002
·Updated
Buffer overflow in the vpnclient program for UNIX VPN Client before 3.5.2 allows local users to gain administrative privileges via a long profile name in a connect argument.
Affected Software
1 affected component
Cisco VPN Client<=3.5.1
Event History
May 28, 2002
CVE Published
04:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1447?
CVE-2002-1447 has a high severity rating due to the potential for local users to gain administrative privileges.
2
How do I fix CVE-2002-1447?
To fix CVE-2002-1447, upgrade the Cisco VPN Client to version 3.5.2 or later.
3
Who is affected by CVE-2002-1447?
CVE-2002-1447 affects local users of Cisco's VPN Client versions prior to 3.5.2 on UNIX systems.
4
What type of vulnerability is CVE-2002-1447?
CVE-2002-1447 is a buffer overflow vulnerability.
5
Can CVE-2002-1447 be exploited remotely?
CVE-2002-1447 cannot be exploited remotely, as it requires local access to the system.