VDB

CVE-2002-0677

CVE-2002-0677 PUBLISHED CVSS 7.5 HIGH

CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.

EPSS 14.94% · 94.7th percentile

Risk Scores

CVSS 2.0
7.5
EPSS Score
14.94%
94.7th percentile

Affected Products

VendorProductVersions
hphp-ux11.11, 11.00, 10.24
ibmaix4.3.3, 5.1
calderaopenunix8.0
sunsolaris2.6
n/an/an/a
sunsunos5.8, 5.7, 5.5.1
calderaunixware7.1.1, 7, 7.1_.0
xi_graphicsdextop2.1
compaqtru64*, 4.0f, 4.0g
sgiirix6.5.8, 6.5.9, 6.5.10

Timeline

  • Jul 12, 2002 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Oct 27, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • May 26, 2023 EPSS Score
  • Jul 17, 2023 EPSS Score
  • Sep 8, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›