CVE-2003-1360Improper Restriction of Operations within the Bounds of a Memory Buffer in HP Hp-ux

Severity
7.2HIGHNVD
EPSS
0.1%
top 81.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateApr 29

Description

Buffer overflow in the setupterm function of (1) lanadmin and (2) landiag programs of HP-UX 10.0 through 10.34 allows local users to execute arbitrary code via a long TERM environment variable.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

NVDhp/hp-ux11 versions+10

🔴Vulnerability Details

2
GHSA
GHSA-cq5g-jq4c-qqp3: Buffer overflow in the setupterm function of (1) lanadmin and (2) landiag programs of HP-UX 102022-04-29
CVEList
CVE-2003-1360: Buffer overflow in the setupterm function of (1) lanadmin and (2) landiag programs of HP-UX 102007-10-17