vendor:
OpenServer
by:
minervini at neuralnoise dot com
7.2
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: OpenServer
Affected Version From: SCO OpenServer 5.0.7
Affected Version To: SCO OpenServer 5.0.7
Patch Exists: NO
Related CWE: N/A
CPE: o:sco:openserver:5.0.7
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: SCO OpenServer 5.0.7
2005
SCO OpenServer nwprint Local Buffer Overflow Vulnerability
nwprint that is distributed with SCO OpenServer is prone to a local buffer overflow vulnerability. This issue arises because the application fails to perform boundary checks prior to copying user-supplied data into sensitive process buffers. A local attacker can gain elevated privileges (lp user) by exploiting this issue.
Mitigation:
Perform boundary checks prior to copying user-supplied data into sensitive process buffers.