CVE-2003-0099Improper Restriction of Operations within the Bounds of a Memory Buffer in Apcupsd

5 documents5 sources
Severity
7.2HIGHNVD
EPSS
0.1%
top 68.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 3
Latest updateMay 3

Description

Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may allow attackers to cause a denial of service or execute arbitrary code, related to usage of the vsprintf function.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages3 packages

debiandebian/apcupsd< apcupsd 3.8.5-1.2 (bookworm)
Debianapcupsd/apcupsd< 3.8.5-1.2+3
NVDapc/apcupsd3.8.5

Patches

🔴Vulnerability Details

2
GHSA
GHSA-26pm-xqvm-vjf3: Multiple buffer overflows in apcupsd before 32022-05-03
OSV
CVE-2003-0099: Multiple buffer overflows in apcupsd before 32003-03-03

💥Exploits & PoCs

1
Exploit-DB
Valdersoft Shopping Cart 3.0 - Remote Command Execution2006-01-03

📋Vendor Advisories

1
Debian
CVE-2003-0099: apcupsd - Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may...2003
CVE-2003-0099 — Debian Apcupsd vulnerability | cvebase