CVE-2002-1317
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/12/2002
Last modified:
30/10/2018
Description
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.
Impact
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:xfree86_project:x11r6:3.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:xfree86_project:x11r6:3.3.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:xfree86_project:x11r6:3.3.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:xfree86_project:x11r6:3.3.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:xfree86_project:x11r6:3.3.5:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.2:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.5:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.7:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.8:*:*:*:*:*:*:* | ||
cpe:2.3:o:sgi:irix:6.5.9:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- ftp://patches.sgi.com/support/free/security/advisories/20021202-01-I
- http://bvlive01.iss.net/issEn/delivery/xforce/alertdetail.jsp?oid=21541
- http://marc.info/?l=bugtraq&m=103825150527843&w=2
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert/48879
- http://www.cert.org/advisories/CA-2002-34.html
- http://www.ciac.org/ciac/bulletins/n-024.shtml
- http://www.iss.net/security_center/static/10375.php
- http://www.kb.cert.org/vuls/id/312313
- http://www.securityfocus.com/advisories/4988
- http://www.securityfocus.com/bid/6241
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A149
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A152
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2816