CVE-2005-3863
Published Nov 29, 2005
Last updated 6 years ago
Overview
- Description
- Stack-based buffer overflow in kkstrtext.h in ktools library 0.3 and earlier, as used in products such as (1) centericq, (2) orpheus, (3) motor, and (4) groan, allows local users or remote attackers to execute arbitrary code via a long parameter to the VGETSTRING macro.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ktools:ktools:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6CC84E5D-A721-4186-8717-206A5A4963DF", "versionEndIncluding": "0.3" } ], "operator": "OR" } ] } ]