CVE-2002-0084Improper Restriction of Operations within the Bounds of a Memory Buffer in Solaris

Severity
7.2HIGHNVD
EPSS
3.2%
top 12.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 15
Latest updateApr 30

Description

Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages2 packages

NVDsun/solaris2.6, 8.0+1
NVDsun/sunos5.7

Patches

🔴Vulnerability Details

2
GHSA
GHSA-q758-hhjv-8jcm: Buffer overflow in the fscache_setup function of cachefsd in Solaris 22022-04-30
CVEList
CVE-2002-0084: Buffer overflow in the fscache_setup function of cachefsd in Solaris 22002-03-07

🔍Detection Rules

2
Suricata
GPL RPC portmap cachefsd request TCP2010-09-23
Suricata
GPL RPC portmap cachefsd request UDP2010-09-23

📋Vendor Advisories

1
Cisco
Heap Overflow in Solaris cachefs Daemon2002-07-24
CVE-2002-0084 — SUN Solaris vulnerability | cvebase