peter bassill · operator
$ cve CVE-2002-1616 JSON

CVE-2002-1616 EXPLOIT

7.2
HIGH · CVSS 2.0 · EPSS 3.9% (pctl 90)

Patch early

A public exploit exists.

Description

Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain root privileges via (1) su, (2) chsh, (3) passwd, (4) chfn, (5) dxchpwd, and (6) libc.

Scoring

CVSS7.2 (HIGH, v2.0)
VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS3.9% — more likely to be exploited than 90% of all CVEs
On CISA KEVno
Public exploityes
Published2002-08-01
Last modified2026-06-16

Affected (1)

VendorProduct
hptru64

Public exploits

SourceTitleDate
exploit-dbTru64 5 - 'su' Env Local Stack Overflow2001-01-26

References

→ the Explorer  ·  watch your stack  ·  NVD