CVE-2002-1689

EXPLOITED

IBM AIX < 4.0 - Buffer Overflow via Excessive Environment Variables

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2002-1689 has been observed exploited in the wild (reported by VulnCheck KEV).

Description

Unknown vulnerability in the login program on AIX before 4.0 could allow remote users to specify 100 or more environment variables when logging on, which exceeds the length of a certain string, possibly triggering a buffer overflow.

References (1)

Core 1
Core References
Third Party Advisory vendor-advisory x_refsource_aixapar
http://archives.neohapsis.com/archives/aix/2002-q1/0005.html

Scores

EPSS 0.0210
EPSS Percentile 79.8%

Details

VulnCheck KEV 2017-06-20
Status published
Products (1)
ibm/aix 3.2.5
Published Dec 31, 2002
Tracked Since Feb 18, 2026