CVE-2017-6553: Buffer Overflow
Published Apr 29, 2017
·Updated
Buffer Overflow in Quest One Identity Privilege Manager for Unix before 6.0.0.061 allows remote attackers to obtain full access to the policy server via an ACTALERTEVENT request that causes memory corruption in the pmmasterd daemon.
Affected Software
1 affected component
Quest Privilege Manager for Unix<=6.0.0-50
Remediation
Event History
Apr 29, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-6553?
CVE-2017-6553 has a critical severity rating with a score of 9.8.
2
How do I fix CVE-2017-6553?
To fix CVE-2017-6553, upgrade to Quest One Identity Privilege Manager for Unix version 6.0.0.061 or later.
3
What type of vulnerability is CVE-2017-6553?
CVE-2017-6553 is classified as a buffer overflow vulnerability.
4
What can attackers achieve with CVE-2017-6553?
Attackers exploiting CVE-2017-6553 can gain full access to the policy server.
5
Which software versions are affected by CVE-2017-6553?
CVE-2017-6553 affects Quest One Identity Privilege Manager for Unix versions prior to 6.0.0.061.