CVE-2002-1607: Buffer Overflow
Published Aug 31, 2002
·Updated
Buffer overflow in ypmatch in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to execute arbitrary code.
Affected Software
10 affected components
HPE HP-UX=10.20
HPE HP-UX=11.00
HPE HP-UX=11.04
HPE HP-UX=11.11
HPE HP-UX=11.22
Compaq Tru64=4.0f
Compaq Tru64=4.0g
Compaq Tru64=5.0a
Compaq Tru64=5.1
Compaq Tru64=5.1a
Event History
Aug 31, 2002
CVE Published
04:00 AM
Mar 25, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1607?
CVE-2002-1607 has a high severity rating due to its potential for local users to execute arbitrary code.
2
Who is affected by CVE-2002-1607?
CVE-2002-1607 affects local users on HP Tru64 UNIX versions 4.0f, 4.0g, 5.0a, 5.1, and 5.1a.
3
How do I fix CVE-2002-1607?
To fix CVE-2002-1607, apply the appropriate security patches provided by HP for affected versions of Tru64 UNIX.
4
What specifically causes CVE-2002-1607?
CVE-2002-1607 is caused by a buffer overflow in the ypmatch command.
5
Can CVE-2002-1607 be exploited remotely?
CVE-2002-1607 cannot be exploited remotely as it requires local access to the affected system.