CVE-2005-0073: Buffer Overflow
Published Feb 11, 2005
·Updated
Buffer overflow in queue.c in a support script for sympa 3.3.3, when running setuid, allows local users to execute arbitrary code.
Affected Software
1 affected component
Debian Sympa=3.3.3
Remediation
Patch Available
Event History
Feb 11, 2005
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0073?
CVE-2005-0073 is considered a high severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2005-0073?
To fix CVE-2005-0073, it is recommended to upgrade to a patched version of Sympa that addresses this buffer overflow issue.
3
Who is affected by CVE-2005-0073?
CVE-2005-0073 affects systems running Sympa version 3.3.3 with setuid permissions enabled.
4
Can CVE-2005-0073 be exploited remotely?
CVE-2005-0073 cannot be exploited remotely, as it requires local user access to the vulnerable system.
5
What kind of attack vector is used in CVE-2005-0073?
CVE-2005-0073 can be exploited through a buffer overflow attack in the affected support script.