20020724 Re: qmailadmin SUID buffer overflowmailing list
http://archives.neohapsis.com/archives/bugtraq/2002-08/0016.html CVE-2002-1414
qmailadmin 1.0.x - Local Buffer Overflow
Record summary
CVE-2002-1414 has a selected CVSS score of 4.6; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in qmailadmin allows local users to gain privileges via a long QMAILADMIN_TEMPLATEDIR environment variable.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBqmailadmin 1.0.x - Local Buffer OverflowExploitDB exploitby Thomas CannonNot analyzed1 file
References
620020806 qmailadmin SUID buffer overflowmailing list
http://marc.info/?l=vuln-dev&m=102859603029424&w=2 inter7.comConfirmation
http://www.inter7.com/qmailadmin/ChangeLog qmailadmin-templatedir-bo(9786)vdb entry
http://www.iss.net/security_center/static/9786.php 5404vdb entry
http://www.securityfocus.com/bid/5404 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-1414