Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2003-0034

Overview

Vulnerability Score 7.2 7.2
CVE Id CVE-2003-0034
Last Modified 10 Sep 2008 08:05:24
Published 07 Feb 2003 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2003-0034

Summary

Buffer overflow in the mtink status monitor, as included in the printer-drivers package in Mandrake Linux, allows local users to execute arbitrary code via a long HOME environment variable.

Vulnerable Systems

Application

  • Jean-jacques Sarton Mtink 0.9.32

  • Jean-jacques Sarton Mtink 0.9.33

  • Jean-jacques Sarton Mtink 0.9.52


References

MISC - http://www.idefense.com/advisory/01.21.03.txt

VULNWATCH - 20030121 iDEFENSE Security Advisory 01.21.03: Buffer Overflows in Mandrake Linux printer-drivers Package

SECTRACK - 1005959

BID - 6656

MANDRAKE - MDKSA-2003:010


Last Updated: 27 May 2016 10:37:45