4.6
CVSSv2

CVE-2002-1814

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 475
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in efstools in Bonobo, when installed setuid, allows local users to execute arbitrary code via long command line arguments.

Vulnerable Product Search on Vulmon Subscribe to Product

gnome bonobo

mandrakesoft mandrake linux 8.0

redhat linux 7.0

redhat linux 7.1

slackware slackware linux 8.0

mandrakesoft mandrake linux 9.0

redhat linux 6.2

mandrakesoft mandrake linux 7.1

Exploits

source: wwwsecurityfocuscom/bid/5125/info Bonobo is a set of tools and CORBA interfaces included as part of the Gnome infrastructure It is designed for use on the Linux and Unix operating systems A boundry condition error has been discovered in the efstool program Due to improper bounds checking, it is possible for a user to supply ...
source: wwwsecurityfocuscom/bid/5125/info Bonobo is a set of tools and CORBA interfaces included as part of the Gnome infrastructure It is designed for use on the Linux and Unix operating systems A boundry condition error has been discovered in the efstool program Due to improper bounds checking, it is possible for a user to suppl ...
source: wwwsecurityfocuscom/bid/5125/info Bonobo is a set of tools and CORBA interfaces included as part of the Gnome infrastructure It is designed for use on the Linux and Unix operating systems A boundry condition error has been discovered in the efstool program Due to improper bounds checking, it is possible for a user to supply a ...