7.2
CVSSv2

CVE-2002-1896

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Alsaplayer 0.99.71, when installed setuid root, allows local users to execute arbitrary code via a long (1) -f or (2) -o command line argument.

Vulnerable Product Search on Vulmon Subscribe to Product

alsaplayer alsaplayer 0.99.71

Exploits

source: wwwsecurityfocuscom/bid/5767/info Alsaplayer is a PCM player that utilizes the ALSA libraries and drivers It is availabe for Linux and Unix platforms A vulnerability has been discovered in Alsaplayer By specifying an overly long "add-on path", it is possible for an attacker to overrun the buffer, potentially allowing for execu ...