Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Cray
Subscribe
|
Unicos
Subscribe
|
|
Freebsd
Subscribe
|
Freebsd
Subscribe
|
|
Gnu
Subscribe
|
Glibc
Subscribe
|
|
Hp
Subscribe
|
|
|
Ibm
Subscribe
|
Aix
Subscribe
|
|
Mit
Subscribe
|
Kerberos 5
Subscribe
|
|
Openafs
Subscribe
|
Openafs
Subscribe
|
|
Openbsd
Subscribe
|
Openbsd
Subscribe
|
|
Redhat
Subscribe
|
|
|
Sgi
Subscribe
|
Irix
Subscribe
|
|
Sun
Subscribe
|
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T01:36:25.372Z
Reserved: 2003-01-10T00:00:00
Link: CVE-2003-0028
No data.
Status : Deferred
Published: 2003-03-25T05:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2003-0028
OpenCVE Enrichment
No data.
Weaknesses