Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2001-0440

6 documents6 sources
Severity
7.5HIGH
EPSS
15.1%
top 5.41%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedJul 2
Latest updateApr 30

Description

Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages3 packages

NVDlicq/licq1.0.2
NVDconectiva/linux9 versions+8

Patches

🔴Vulnerability Details

2
GHSA
GHSA-v3qr-73f4-xf4g: Buffer overflow in logging functions of licq before 12022-04-30
CVEList
CVE-2001-0440: Buffer overflow in logging functions of licq before 12001-09-18

💥Exploits & PoCs

1
Exploit-DB
LICQ 0.85/1.0.1/1.0.2 - Remote Buffer Overflow2000-12-26

📋Vendor Advisories

1
Red Hat
security flaw2001-04-20

💬Community

1
Bugzilla
CVE-2001-0440 security flaw2018-08-16
CVE-2001-0440 (HIGH CVSS 7.5) | Buffer overflow in logging function | cvebase.io