7.5
CVE-2005-3269
- EPSS 3.15%
- Veröffentlicht 20.10.2005 23:02:00
- Zuletzt bearbeitet 16.06.2026 22:16:36
- Erkennungen
Stack-based buffer overflow in help.cgi in the HTTP administrative interface for (1) Sun Java System Directory Server 5.2 2003Q4, 2004Q2, and 2005Q1, (2) Red Hat Directory Server and (3) Certificate Server before 7.1 SP1, (4) Sun ONE Directory Server 5.1 SP4 and earlier, and (5) Sun ONE Administration Server 5.2 allows remote attackers to cause a denial of service (admin server crash), or local users to gain root privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sun ≫ Java System Directory Proxy Server Version 5.2 Update 2003q4
Sun ≫ Java System Directory Proxy Server Version 5.2 Update 2004q2
Sun ≫ Java System Directory Proxy Server Version 5.2 Update 2005q1
Sun ≫ Java System Directory Server Version 5.2
Sun ≫ Java System Directory Server Version 5.2 Update 2003q4
Sun ≫ Java System Directory Server Version 5.2 Update 2004q2
Sun ≫ Java System Directory Server Version 5.2 Update 2005q1
Sun ≫ One Administration Server Version 5.2
Sun ≫ One Directory Server Version 4.16
Sun ≫ One Directory Server Version 4.16 Update sp1
Sun ≫ One Directory Server Version 5.0
Sun ≫ One Directory Server Version 5.0 Update sp1
Sun ≫ One Directory Server Version 5.0_sp2
Sun ≫ One Directory Server Version 5.1
Sun ≫ One Directory Server Version 5.1 Edition x86
Sun ≫ One Directory Server Version 5.1 Update sp1
Sun ≫ One Directory Server Version 5.1 Update sp2
Sun ≫ One Directory Server Version 5.1 Update sp3
Sun ≫ One Directory Server Version 5.1 Update sp3 Edition x86
Sun ≫ One Directory Server Version 5.1 Update sp4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.15% | 0.863 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
http://marc.info/?l=bugtraq&m=112862037500012&w=2
http://marc.info/?l=bugtraq&m=113815459026080&w=2
http://secunia.com/advisories/17092
http://secunia.com/advisories/18590
http://securityreason.com/securityalert/367
http://securityreason.com/securityalert/51
http://securitytracker.com/id?1015014
http://securitytracker.com/id?1015536
http://securitytracker.com/id?1015537
http://securitytracker.com/id?1015538
http://sunsolve.sun.com/search/document.do?assetkey=1-21-117665-03-1
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102002-1
http://sunsolve.sun.com/search/document.do?assetkey=1-66-228419-1
http://www.securityfocus.com/bid/15013
http://www.securityfocus.com/bid/16345
http://www.vupen.com/english/advisories/2005/1988
https://exchange.xforce.ibmcloud.com/vulnerabilities/24311