← Back

CVE-2002-1500

nvd nist
Published: Apr 2, 2003Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

Buffer overflow in (1) mrinfo, (2) mtrace, and (3) pppd in NetBSD 1.4.x through 1.6 allows local users to gain privileges by executing the programs after filling the file descriptor tables, which produces file descriptors larger than FD_SETSIZE, which are not checked by FD_SET().

Affected (23)

Products: Netbsd: Netbsd
1 product
Netbsd
Configuration A
23 vulnerable
Vulnerable SoftwareAffected Versions
Netbsd
Version 1.4.1
Version 1.4.1
Version 1.4.1
Version 1.4.1
Version 1.4.1
Version 1.4.1
Version 1.4.2
Version 1.4.2
Version 1.4.2
Version 1.4.2
Version 1.4.2
Version 1.4.3
Version 1.4
Version 1.4
Version 1.4
Version 1.4
Version 1.4
Version 1.5.1
Version 1.5.2
Version 1.5.3
Version 1.5
Version 1.5
Version 1.5

References (6)

ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-014.txt.asc (unsafe URL)
Source: cve@mitre.org
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
PatchVendor Advisory
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-014.txt.asc (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.