5
CVSSv2

CVE-2002-0912

Published: 04/10/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

in.uucpd UUCP server in Debian GNU/Linux 2.2, and possibly other operating systems, does not properly terminate long strings, which allows remote malicious users to cause a denial of service, possibly due to a buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

debian debian linux 2.2

Vendor Advisories

We have received reports that inuucpd, an authentication agent in the uucp package, does not properly terminate certain long input strings This has been corrected in uucp package version 1061-11potato3 for Debian 22 (potato) and in version 1061-18 for the upcoming (woody) release We recommend you upgrade your uucp package immediately ...