Multiple buffer overflows in Advanced Maryland Automatic Network Disk Archiver (AMANDA) 2.3.0.4 allow (1) remote attackers to execute arbitrary code via long commands to the amindexd daemon, or certain local users to execute arbitrary code via long command line arguments to the programs (2) amcheck, (3) amgetidx, (4) amtrmidx, (5) createindex-dump, or (6) createindex-gnutar.
References
Link | Resource |
---|---|
http://online.securityfocus.com/archive/1/274215 | |
http://www.iss.net/security_center/static/9181.php | Patch Vendor Advisory |
http://www.iss.net/security_center/static/9182.php | Patch Vendor Advisory |
http://www.securityfocus.com/bid/4836 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/4840 | Patch Vendor Advisory |
Configurations
History
No history.
Information
Published : 2002-10-04 04:00
Updated : 2008-09-05 20:29
NVD link : CVE-2002-0901
Mitre link : CVE-2002-0901
CVE.ORG link : CVE-2002-0901
JSON object : View
Products Affected
amanda
- amanda
CWE