CVE-2002-1615: Buffer Overflow
Published Sep 13, 2002
·Updated
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to execute arbitrary code via (1) msgchk or (2) .upd..loader.
Affected Software
10 affected components
Compaq Tru64=4.0g
Compaq Tru64=5.0a
Compaq Tru64=4.0f
HPE HP-UX=11.11
Compaq Tru64=5.1a
HPE HP-UX=11.04
HPE HP-UX=11.00
Compaq Tru64=5.1
HPE HP-UX=11.22
HPE HP-UX=10.20
Event History
Sep 13, 2002
CVE Published
04:00 AM
Mar 25, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1615?
CVE-2002-1615 is considered critical due to its potential to allow local users to execute arbitrary code.
2
How do I fix CVE-2002-1615?
To fix CVE-2002-1615, you need to apply the appropriate patches provided by HP for affected versions of Tru64 UNIX and HP-UX.
3
Which versions are affected by CVE-2002-1615?
CVE-2002-1615 affects HP Tru64 UNIX versions 4.0f, 4.0g, 5.0a, 5.1, and 5.1a, as well as multiple versions of HP-UX.
4
What causes CVE-2002-1615?
CVE-2002-1615 is caused by multiple buffer overflows in the msgchk and .upd..loader components of HP Tru64 UNIX.
5
Who is impacted by CVE-2002-1615?
Local users on systems running the affected versions of HP Tru64 UNIX and HP-UX are impacted by CVE-2002-1615.