SecBoard
Zurück zur CVE-Übersicht

CVE-2002-2099

HIGH(7.2)

AV:L/AC:L/Au:N/C:C/I:C/A:C

Risk Signal Score18/100 — NIEDRIG
  • CVSS 7.2 — Hoch

EPSS-Score

1%

Exploit-Wahrscheinlichkeit (30 Tage)

CVSS Score

7.2

Technische Schwere

Beschreibung

Buffer overflow in the GNU DataDisplay Debugger (DDD) 3.3.1 allows local users to execute arbitrary code and possibly gain privileges via a long HOME environment variable. NOTE: since DDD is not installed setuid or setgid, perhaps this issue should not be included in CVE.

Referenzen