Vulnerability Description
Buffer overflow in backup/src/vmsbackup.c (aka the backup utility) in FreeVMS before 0.3.6 might allow local users to gain privileges via a long string in response to an "extract [ny]" prompt.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Freevms | Freevms | 0.3.5 |
References
- ftp://freevms.nvg.org/pub/vms/freevms/freevms-0_3_6.tgzPatch
- http://osvdb.org/35521
- http://www.securityfocus.com/bid/24333Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34820
- ftp://freevms.nvg.org/pub/vms/freevms/freevms-0_3_6.tgzPatch
- http://osvdb.org/35521
- http://www.securityfocus.com/bid/24333Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34820
FAQ
What is CVE-2007-3124?
CVE-2007-3124 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Buffer overflow in backup/src/vmsbackup.c (aka the backup utility) in FreeVMS before 0.3.6 might allow local users to gain privileges via a long string in response to an "extract [ny]" prompt.
How severe is CVE-2007-3124?
CVE-2007-3124 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-3124?
Check the references section above for vendor advisories and patch information. Affected products include: Freevms Freevms.