7.2
CVSSv2

CVE-2002-0004

Published: 27/02/2002 Updated: 10/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap corruption vulnerability in the "at" program allows local users to execute arbitrary code via a malformed execution time, which causes at to free the same memory twice.

Vulnerable Product Search on Vulmon Subscribe to Product

caldera openlinux server 3.1

caldera openlinux workstation 3.1

redhat linux 7.2

debian debian linux 2.2

suse suse linux 7.1

redhat linux 6.2

slackware slackware linux 8.0

slackware slackware linux 7.1

mandrakesoft mandrake linux 8.1

redhat linux 7.1

suse suse linux 7.3

suse suse linux 7.0

suse suse linux 6.4

redhat linux 7.0

freebsd freebsd 4.4

slackware slackware linux 7.0

mandrakesoft mandrake linux 8.0

netbsd netbsd 1.5.2

freebsd freebsd 4.2

freebsd freebsd 4.1.1

freebsd freebsd 4.3

suse suse linux 7.2

Exploits

source: wwwsecurityfocuscom/bid/3886/info at is a freely available, open source scheduler package It is included with various Unix and Linux operating systems, and maintained by public domain Under some circumstances, at does not correctly handle time input A local user attempting to schedule a task via commandline execution and using ...