VDB
CVE-2005-3863
CVE-2005-3863
PUBLISHED
CVSS 7.5 HIGH
Stack-based buffer overflow in kkstrtext.h in ktools library 0.3 and earlier, as used in products such as (1) centericq, (2) orpheus, (3) motor, and (4) groan, allows local users or remote attackers to execute arbitrary code via a long parameter to the VGETSTRING macro.
EPSS 7.26% · 91.8th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
7.26%
91.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | * |
| ktools | ktools | 0 |
Timeline
- Nov 29, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- 21684 third-party-advisory
- 17768 third-party-advisory
- ADV-2006-2062 vdb
- 20368 third-party-advisory
- GLSA-200608-27 vendor-advisory
- GLSA-200512-11 vendor-advisory
- DSA-1088 vendor-advisory
- 15600 vdb
- 20446 third-party-advisory
- http://www.zone-h.org/en/advisories/read/id=8480/ url
- 20329 third-party-advisory
- ktools-kkstrtext-bo(23233) vdb
- DSA-1083 vendor-advisory
- ADV-2005-2605 vdb
- 20051127 ZRCSA-200503 - ktools Buffer Overflow Vulnerability mailing-list
- 21161 vdb
- 18081 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2005-3863 advisory
- http://www.zone-h.org/en/advisories/read/id=8480 url