CVE-2008-1056

Multiple stack-based buffer overflows in Symark PowerBroker 2.8 through 5.0.1 allow local users to gain privileges via a long argv[0] string when executing (1) pbrun, (2) pbsh, or (3) pbksh. NOTE: the product is often installed in environments with trust relationships that facilitate subsequent remote compromises.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:symark:powerbroker:2.8:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.2:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.5:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:4.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:5.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:5.01:*:*:*:*:*:*:*

History

21 Nov 2024, 00:43

Type Values Removed Values Added
References () http://secunia.com/advisories/29111 - Vendor Advisory () http://secunia.com/advisories/29111 - Vendor Advisory
References () http://www.mnin.org/advisories/2008_symarkpb.pdf - Exploit () http://www.mnin.org/advisories/2008_symarkpb.pdf - Exploit
References () http://www.securityfocus.com/bid/28015 - Patch () http://www.securityfocus.com/bid/28015 - Patch
References () http://www.symark.com/support/PBFeb2008Announcement.html - Patch () http://www.symark.com/support/PBFeb2008Announcement.html - Patch
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/40872 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/40872 -

Information

Published : 2008-02-28 19:44

Updated : 2024-11-21 00:43


NVD link : CVE-2008-1056

Mitre link : CVE-2008-1056

CVE.ORG link : CVE-2008-1056


JSON object : View

Products Affected

symark

  • powerbroker
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer