← Back

CVE-2002-0677

nvd nist
Published: Jul 23, 2002Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.

Affected (46)

Products: Caldera: Unixware, Openunix · Sgi: Irix · Xi Graphics: Dextop · +4 more
Show all products
2 products
Unixware
Openunix
1 product
Irix
1 product
Dextop
1 product
Tru64
1 product
Hp Ux
1 product
Aix
2 products
Solaris
Sunos
Configuration A
29 vulnerable
Vulnerable SoftwareAffected Versions
Caldera
Version 7.1.1
Version 7.1_.0
Version 7
Sgi
Version 5.2
Version 5.3
Version 6.0.1
Version 6.0
Version 6.1
Version 6.2
Version 6.3
Version 6.4
Version 6.5.10
Version 6.5.11
Version 6.5.12
Version 6.5.13
Version 6.5.14
Version 6.5.15
Version 6.5.16
Version 6.5.1
Version 6.5.2
Version 6.5.3
Version 6.5.4
Version 6.5.5
Version 6.5.6
Version 6.5.7
Version 6.5.8
Version 6.5.9
Version 6.5
Version 2.1
Configuration B
17 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0
Compaq
Version 4.0f
Version 4.0g
Version 5.0a
Version 5.1
Version 5.1a
Hp
Version 10.10
Version 10.20
Version 10.24
Version 11.00
Version 11.11
Ibm
Version 4.3.3
Version 5.1
Version 2.6
Sun
Version 5.5.1
Version 5.7
Version 5.8

References (16)

ftp://ftp.caldera.com/pub/updates/OpenUNIX/CSSA-2002-SCO.28/CSSA-2002-SCO.28.txt (unsafe URL)
Source: cve@mitre.org
ftp://patches.sgi.com/support/free/security/advisories/20021102-02-P (unsafe URL)
Source: cve@mitre.org
Source: cve@mitre.org
PatchThird Party AdvisoryUS Government Resource
Source: cve@mitre.org
PatchThird Party AdvisoryUS Government Resource
ftp://ftp.caldera.com/pub/updates/OpenUNIX/CSSA-2002-SCO.28/CSSA-2002-SCO.28.txt (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
ftp://patches.sgi.com/support/free/security/advisories/20021102-02-P (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource

Timeline

No history available yet.