CVE-2008-1056
Published Feb 28, 2008
Last updated 7 years ago
Overview
- Description
- Multiple stack-based buffer overflows in Symark PowerBroker 2.8 through 5.0.1 allow local users to gain privileges via a long argv[0] string when executing (1) pbrun, (2) pbsh, or (3) pbksh. NOTE: the product is often installed in environments with trust relationships that facilitate subsequent remote compromises.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.9
- Impact score
- 10
- Exploitability score
- 3.4
- Vector string
- AV:L/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:symark:powerbroker:2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F16E3B69-F425-4FAB-9201-2CF0590016B5" }, { "criteria": "cpe:2.3:a:symark:powerbroker:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "16AB3CBC-A6A6-487D-A530-9E45B4BFDD9D" }, { "criteria": "cpe:2.3:a:symark:powerbroker:3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FD7ADE8D-CC82-4BB7-9BA1-90DCBE7DFC0A" }, { "criteria": "cpe:2.3:a:symark:powerbroker:3.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "47E587CF-6F19-4BB1-8C30-577D4F1D6DEF" }, { "criteria": "cpe:2.3:a:symark:powerbroker:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B255DD3-556A-4B77-8479-062E841EED10" }, { "criteria": "cpe:2.3:a:symark:powerbroker:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0131FCF9-69F4-46DA-8A6B-81FB722170BF" }, { "criteria": "cpe:2.3:a:symark:powerbroker:5.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D8BED834-E613-423A-82F7-A2E0FF158641" } ], "operator": "OR" } ] } ]