Buffer Overflow In The Software Distributor Uti vulnerability report
vulnerabilities.aspcode.net
Phase:
Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local users to execute arbitrary code via a long LANG environment variable to setuid programs such as (1) swinstall and (2) swmodify.
References
BUGTRAQ:Thursday, November 13, 2003 NSFOCUS SA2003-07: HP-UX Software Distributor Buffer Overflow Vulnerability | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=106873965001431&w=2 | VULNWATCH:Thursday, November 13, 2003 NSFOCUS SA2003-07: HP-UX Software Distributor Buffer Overflow Vul
Votes:
Assigned (Tuesday, February 11, 2003)
Comments:
None (candidate not yet proposed)
F7:
Tagged as
Distributor
environment
arbitrary
utilities
variable
programs
overflow
Software
execute
Buffer
setuid
allows
B1100
B1111
local
users
HP-UX
such
code
long
LANG
via