Vulnerability Details CVE-2002-1387
The spray mode in traceroute-nanog (aka traceroute-ng) may allow local users to overwrite arbitrary memory locations via an array index overflow using the nprobes (number of probes) argument.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.8%
CVSS Severity
CVSS v2 Score 4.6
Products affected by CVE-2002-1387
-
cpe:2.3:a:ehud_gavron:tracesroute:6.0
-
cpe:2.3:a:ehud_gavron:tracesroute:6.1
-
cpe:2.3:a:ehud_gavron:tracesroute:6.1.1