CVE-2002-0391
Summary
| CVE | CVE-2002-0391 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2002-08-12 04:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on SunRPC including dietlibc, allows remote attackers to execute arbitrary code by passing a large number of arguments to xdr_array through RPC services such as rpc.cmsd and dmispd. |
Risk And Classification
Primary CVSS: v3.1 9.8 CRITICAL from [email protected]
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Problem Types: CWE-190 | n/a | CWE-190 CWE-190 Integer Overflow or Wraparound
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | [email protected] | Primary | 9.8 | CRITICAL | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| 3.1 | ADP | DECLARED | 9.8 | CRITICAL | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| 3.1 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 | Secondary | 9.8 | CRITICAL | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| 2.0 | [email protected] | Primary | 10 | AV:N/AC:L/Au:N/C:C/I:C/A:C |
CVSS v3.1 Breakdown
Attack Vector
NetworkAttack Complexity
LowPrivileges Required
NoneUser Interaction
NoneScope
UnchangedConfidentiality
HighIntegrity
HighAvailability
HighCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Freebsd | Freebsd | All | All | All | All |
| Operating System | Microsoft | Windows 2000 | - | All | All | All |
| Operating System | Microsoft | Windows Nt | 4.0 | All | All | All |
| Operating System | Microsoft | Windows Xp | - | All | All | All |
| Operating System | Openbsd | Openbsd | 3.1 | All | All | All |
| Operating System | Sun | Solaris | 2.6 | All | All | All |
| Operating System | Sun | Solaris | 9.0 | All | All | All |
| Operating System | Sun | Sunos | 5.5.1 | All | All | All |
| Operating System | Sun | Sunos | 5.7 | All | All | All |
| Operating System | Sun | Sunos | 5.8 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| patches.sgi.com/support/free/security/advisories/20020801-01-A | af854a3a-2127-422b-91ae-364da2661108 | patches.sgi.com | Broken Link |
| ISS: Security Center: X-Force Alerts and Advisories | af854a3a-2127-422b-91ae-364da2661108 | bvlive01.iss.net | Broken Link, Vendor Advisory |
| Home - Conectiva | af854a3a-2127-422b-91ae-364da2661108 | distro.conectiva.com.br | Broken Link |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Broken Link |
| redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | Broken Link |
| LinuxSecurity.com: EnGarde: several glibc vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.linuxsecurity.com | Broken Link |
| ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-011.txt.asc | af854a3a-2127-422b-91ae-364da2661108 | ftp.netbsd.org | Broken Link |
| 'GLSA: glibc' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | Mailing List |
| Debian -- Security Information -- DSA-142-1 openafs | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Broken Link |
| Home - Conectiva | af854a3a-2127-422b-91ae-364da2661108 | distro.conectiva.com.br | Broken Link |
| 'Remote Buffer Overflow Vulnerability in Sun RPC' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | Exploit, Mailing List |
| Neohapsis Archives - HP Security Digests - HP-UX security bulletins digest - From support_feedback_at_us-support-mail.external.hp.com | af854a3a-2127-422b-91ae-364da2661108 | archives.neohapsis.com | Broken Link |
| Neohapsis Archives - Bugtraq - OpenAFS Security Advisory 2002-001: Remote root vulnerability in OpenAFS servers - From shadow_at_dementia.org | af854a3a-2127-422b-91ae-364da2661108 | archives.neohapsis.com | Broken Link |
| SecurityFocus HOME Mailing List: BugTraq | af854a3a-2127-422b-91ae-364da2661108 | online.securityfocus.com | Broken Link, Third Party Advisory, VDB Entry |
| 'FreeBSD Security Advisory FreeBSD-SA-02:34.rpc [REVISED]' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | Exploit, Mailing List |
| online.securityfocus.com/advisories/4402 | af854a3a-2127-422b-91ae-364da2661108 | online.securityfocus.com | Broken Link, Third Party Advisory, VDB Entry |
| Microsoft Security Bulletin MS02-057 - Critical | Microsoft Docs | af854a3a-2127-422b-91ae-364da2661108 | docs.microsoft.com | Third Party Advisory |
| redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | rhn.redhat.com | Broken Link |
| 'RPC analysis' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | Exploit, Mailing List |
| redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | Broken Link |
| ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-055.0.txt | af854a3a-2127-422b-91ae-364da2661108 | ftp.caldera.com | Broken Link |
| CERT/CC Vulnerability Note VU#192995 | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | Third Party Advisory, US Government Resource |
| Debian -- Security Information -- DSA-143-1 krb5 | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Broken Link |
| Debian -- Security Information -- DSA-333-1 acm | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Broken Link |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Broken Link |
| patches.sgi.com/support/free/security/advisories/20020801-01-P | af854a3a-2127-422b-91ae-364da2661108 | patches.sgi.com | Broken Link |
| Debian -- Security Information -- DSA-146-2 dietlibc | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Broken Link |
| redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | Broken Link |
| Multiple Vendor Sun RPC xdr_array Buffer Overflow Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Broken Link, Third Party Advisory, VDB Entry |
| Neohapsis Archives - IBM AIX lists - Re: New_AIXV4_Fixes - From aixserv_at_austin.ibm.com | af854a3a-2127-422b-91ae-364da2661108 | archives.neohapsis.com | Broken Link |
| CERT Advisory CA-2002-25 Integer Overflow In XDR Library | af854a3a-2127-422b-91ae-364da2661108 | www.cert.org | Patch, Third Party Advisory, US Government Resource |
| Debian -- Security Information -- DSA-149-1 glibc | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Broken Link |
| ISS X-Force Database: sunrpc-xdr-array-bo (9170): SunRPC xdr_array buffer overflow | af854a3a-2127-422b-91ae-364da2661108 | www.iss.net | Broken Link |
| redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | Broken Link |
| redhat.com | Red Hat Support | af854a3a-2127-422b-91ae-364da2661108 | rhn.redhat.com | Broken Link |
| Mandrakesoft Security Advisories | af854a3a-2127-422b-91ae-364da2661108 | www.mandrakesoft.com | Broken Link |
| 'MITKRB5-SA-2002-001: Remote root vulnerability in MIT krb5 admin' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | Exploit, Mailing List |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Broken Link |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.