Vulnerability Details CVE-2002-0677
CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.239
EPSS Ranking 95.7%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2002-0677
-
cpe:2.3:a:caldera:unixware:7
-
cpe:2.3:a:caldera:unixware:7.1.1
-
cpe:2.3:a:caldera:unixware:7.1_.0
-
cpe:2.3:a:xi_graphics:dextop:2.1
-
cpe:2.3:o:caldera:openunix:8.0
-
cpe:2.3:o:compaq:tru64:4.0f
-
cpe:2.3:o:compaq:tru64:4.0g
-
cpe:2.3:o:compaq:tru64:5.0a
-
cpe:2.3:o:compaq:tru64:5.1
-
cpe:2.3:o:compaq:tru64:5.1a
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:o:sgi:irix:6.5.10
-
cpe:2.3:o:sgi:irix:6.5.11
-
cpe:2.3:o:sgi:irix:6.5.12
-
cpe:2.3:o:sgi:irix:6.5.13
-
cpe:2.3:o:sgi:irix:6.5.14
-
cpe:2.3:o:sgi:irix:6.5.15
-
cpe:2.3:o:sgi:irix:6.5.16
-
-
-
-
-
-
-
-
-
cpe:2.3:o:sun:solaris:2.6
-
cpe:2.3:o:sun:sunos:5.5.1
-
-