Lucene search

K
cveMitreCVE-2002-2207
HistoryNov 16, 2005 - 9:17 p.m.

CVE-2002-2207

2005-11-1621:17:00
mitre
web.nvd.nist.gov
22
cve-2002-2207
buffer overflow
remote code execution
ssldump
rsa premastersecret
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.054

Percentile

93.2%

Buffer overflow in ssldump 0.9b2 and earlier, when running in decryption mode, allows remote attackers to execute arbitrary code via a long RSA PreMasterSecret.

Affected configurations

Nvd
Node
eric_rescorlassldumpMatch0.9b1
OR
eric_rescorlassldumpMatch0.9b2
VendorProductVersionCPE
eric_rescorlassldump0.9b1cpe:2.3:a:eric_rescorla:ssldump:0.9b1:*:*:*:*:*:*:*
eric_rescorlassldump0.9b2cpe:2.3:a:eric_rescorla:ssldump:0.9b2:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.054

Percentile

93.2%

Related for CVE-2002-2207