CVE-2002-0062
Summary
| CVE | CVE-2002-0062 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2002-03-08 05:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Buffer overflow in ncurses 5.0, and the ncurses4 compatibility package as used in Red Hat Linux, allows local users to gain privileges, related to "routines for moving the physical cursor and scrolling." |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:L/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Debian | Debian Linux | 2.2 | All | 68k | All |
| Operating System | Debian | Debian Linux | 2.2 | All | alpha | All |
| Operating System | Debian | Debian Linux | 2.2 | All | arm | All |
| Operating System | Debian | Debian Linux | 2.2 | All | ia-32 | All |
| Operating System | Debian | Debian Linux | 2.2 | All | powerpc | All |
| Operating System | Debian | Debian Linux | 2.2 | All | sparc | All |
| Operating System | Freebsd | Freebsd | 3.1 | All | All | All |
| Operating System | Freebsd | Freebsd | 3.2 | All | All | All |
| Operating System | Freebsd | Freebsd | 3.3 | All | All | All |
| Operating System | Freebsd | Freebsd | 3.4 | All | All | All |
| Operating System | Freebsd | Freebsd | 3.5 | All | All | All |
| Operating System | Freebsd | Freebsd | 3.5.1 | All | All | All |
| Operating System | Freebsd | Freebsd | 4.0 | All | All | All |
| Operating System | Freebsd | Freebsd | 4.1 | All | All | All |
| Operating System | Freebsd | Freebsd | 4.1.1 | All | All | All |
| Operating System | Freebsd | Freebsd | 5.0 | All | All | All |
| Application | Gnu | Ncurses | All | All | All | All |
| Operating System | Redhat | Linux | 6.1 | All | alpha | All |
| Operating System | Redhat | Linux | 6.1 | All | i386 | All |
| Operating System | Redhat | Linux | 6.1 | All | sparc | All |
| Operating System | Redhat | Linux | 7.0 | All | alpha | All |
| Operating System | Redhat | Linux | 7.0 | All | i386 | All |
| Operating System | Redhat | Linux | 7.1 | All | alpha | All |
| Operating System | Redhat | Linux | 7.1 | All | i386 | All |
| Operating System | Redhat | Linux | 7.2 | All | i386 | All |
| Operating System | Suse | Suse Linux | 6.2 | All | All | All |
| Operating System | Suse | Suse Linux | 6.3 | All | All | All |
| Operating System | Suse | Suse Linux | 7.0 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | Patch, Vendor Advisory |
| Debian -- Security Information -- DSA-113-1 ncurses | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Patch, Vendor Advisory |
| 504 Gateway Time-out | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Patch, Third Party Advisory, VDB Entry, Vendor Advisory |
| ISS X-Force Database: gnu-ncurses-window-bo (8222): GNU Ncurses large window buffer overflow | af854a3a-2127-422b-91ae-364da2661108 | www.iss.net | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.