Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-1999-0003Improper Restriction of Operations within the Bounds of a Memory Buffer in HP Hp-ux

9 documents5 sources
Severity
10.0CRITICALNVD
EPSS
90.6%
top 0.38%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedApr 1
Latest updateMay 3

Description

Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages6 packages

NVDibm/aix9 versions+8
NVDhp/hp-ux4 versions+3
NVDsgi/irix7 versions+6
NVDsun/sunos8 versions+7
NVDsun/solaris2.6

🔴Vulnerability Details

2
GHSA
GHSA-gxwg-52wj-vc7w: Execute commands as root via buffer overflow in Tooltalk database server (rpc2022-05-03
CVEList
CVE-1999-0003: Execute commands as root via buffer overflow in Tooltalk database server (rpc1999-09-29

💥Exploits & PoCs

2
Exploit-DB
Xi Graphics Maximum CDE 1.2.3/TriTeal TED CDE 4.3/Sun Solaris 2.5.1 - ToolTalk RPC Service Overflow (2)1998-08-31
Exploit-DB
Xi Graphics Maximum CDE 1.2.3/TriTeal TED CDE 4.3/Sun Solaris 2.5.1 - ToolTalk RPC Service Overflow (1)1998-08-31

🔍Detection Rules

4
Suricata
GPL RPC portmap ttdbserv request TCP2010-09-23
Suricata
GPL RPC portmap ttdbserv request UDP2010-09-23
Suricata
GPL RPC tooltalk TCP overflow attempt2010-09-23
Suricata
GPL RPC tooltalk UDP overflow attempt2010-09-23
CVE-1999-0003 — HP Hp-ux vulnerability | cvebase