7.2
CVSSv2

CVE-2002-0905

Published: 04/10/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 730
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in sqlexec for Informix SE-7.25 allows local users to gain root privileges via a long INFORMIXDIR environment variable.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm informix 7.25_.uc1_se

ibm informix 7.25_.uc2_se

ibm informix 7.25_.uc3_se

Exploits

source: wwwsecurityfocuscom/bid/4891/info Informix is an enterprise database distributed and maintained by IBM A buffer overflow vulnerability has been reported for Informix-SE for Linux The overflow is due to an unbounded string copy of the INFORMIXDIR environment variable to a local buffer There is at least one setuid root executa ...
source: wwwsecurityfocuscom/bid/4891/info Informix is an enterprise database distributed and maintained by IBM A buffer overflow vulnerability has been reported for Informix-SE for Linux The overflow is due to an unbounded string copy of the INFORMIXDIR environment variable to a local buffer There is at least one setuid root executabl ...