CVE-2003-0099
published 2003-03-03CVE-2003-0099: Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may allow attackers to cause a denial of service or execute arbitrary code…
PriorityP421high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.55%
42.0th percentile
Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may allow attackers to cause a denial of service or execute arbitrary code, related to usage of the vsprintf function.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apc | apcupsd | — | — |
| apcupsd | apcupsd | >= 0 < 3.8.5-1.2 | 3.8.5-1.2 |
| apcupsd | apcupsd | >= 0 < 3.8.5-1.2 | 3.8.5-1.2 |
| apcupsd | apcupsd | >= 0 < 3.8.5-1.2 | 3.8.5-1.2 |
| apcupsd | apcupsd | >= 0 < 3.8.5-1.2 | 3.8.5-1.2 |
| debian | apcupsd | < apcupsd 3.8.5-1.2 (bookworm) | apcupsd 3.8.5-1.2 (bookworm) |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH
vendor_debian7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-26pm-xqvm-vjf3: Multiple buffer overflows in apcupsd before 3
ghsa_unreviewed·2022-05-03
CVE-2003-0099 [HIGH] GHSA-26pm-xqvm-vjf3: Multiple buffer overflows in apcupsd before 3
Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may allow attackers to cause a denial of service or execute arbitrary code, related to usage of the vsprintf function.
OSV
CVE-2003-0099: Multiple buffer overflows in apcupsd before 3
osv·2003-03-03·CVSS 7.2
CVE-2003-0099 [HIGH] CVE-2003-0099: Multiple buffer overflows in apcupsd before 3
Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may allow attackers to cause a denial of service or execute arbitrary code, related to usage of the vsprintf function.
Debian
CVE-2003-0099: apcupsd - Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may...
vendor_debian·2003·CVSS 7.2
CVE-2003-0099 [HIGH] CVE-2003-0099: apcupsd - Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may...
Multiple buffer overflows in apcupsd before 3.8.6, and 3.10.x before 3.10.5, may allow attackers to cause a denial of service or execute arbitrary code, related to usage of the vsprintf function.
Scope: local
bookworm: resolved (fixed in 3.8.5-1.2)
bullseye: resolved (fixed in 3.8.5-1.2)
forky: resolved (fixed in 3.8.5-1.2)
sid: resolved (fixed in 3.8.5-1.2)
trixie: resolved (fixed in 3.8.5-1.2)
No detection rules found.
No writeups or analysis indexed.
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2003-015.0.txthttp://securitytracker.com/id?1006108http://sourceforge.net/project/shownotes.php?release_id=137892http://sourceforge.net/project/shownotes.php?release_id=137900http://www.debian.org/security/2003/dsa-277http://www.iss.net/security_center/static/11491.phphttp://www.mandriva.com/security/advisories?name=MDKSA-2003:018http://www.novell.com/linux/security/advisories/2003_022_apcupsd.htmlhttp://www.securityfocus.com/bid/7200ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2003-015.0.txthttp://securitytracker.com/id?1006108http://sourceforge.net/project/shownotes.php?release_id=137892http://sourceforge.net/project/shownotes.php?release_id=137900http://www.debian.org/security/2003/dsa-277http://www.iss.net/security_center/static/11491.phphttp://www.mandriva.com/security/advisories?name=MDKSA-2003:018http://www.novell.com/linux/security/advisories/2003_022_apcupsd.htmlhttp://www.securityfocus.com/bid/7200
2003-03-03
Published