7.2
CVSSv2

CVE-2003-0834

Published: 01/12/2003 Updated: 03/05/2018
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 730
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3) LOGNAME.

Vulnerable Product Search on Vulmon Subscribe to Product

sco unixware 7.1.1

sco unixware 7.1.3

sco open unix 8.0

Exploits

/* * $Id: raptor_libdthelpc,v 11 2004/12/04 14:44:38 raptor Exp $ * * raptor_libdthelpc - libDtHelpso local, Solaris/SPARC 7/8/9 * Copyright (c) 2003-2004 Marco Ivaldi <raptor@0xdeadbeefinfo> * * Buffer overflow in CDE libDtHelp library allows local users to execute * arbitrary code via a modified DTHELPUSERSEARCHPATH environment variabl ...
/* * $Id: raptor_libdthelp2c,v 11 2004/12/04 14:44:38 raptor Exp $ * * raptor_libdthelp2c - libDtHelpso local, Solaris/SPARC 7/8/9 * Copyright (c) 2003-2004 Marco Ivaldi <raptor@0xdeadbeefinfo> * * Buffer overflow in CDE libDtHelp library allows local users to execute * arbitrary code via a modified DTHELPUSERSEARCHPATH environment varia ...