Required CVE Record Information
Description
Multiple stack-based buffer overflows in Symark PowerBroker 2.8 through 5.0.1 allow local users to gain privileges via a long argv[0] string when executing (1) pbrun, (2) pbsh, or (3) pbksh. NOTE: the product is often installed in environments with trust relationships that facilitate subsequent remote compromises.
References 5 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 5 Total
- http://www.mnin.org/advisories/2008_symarkpb.pdf x_transferred
- secunia.com: 29111 third-party-advisoryx_transferred
- securityfocus.com: 28015 vdb-entryx_transferred
- http://www.symark.com/support/PBFeb2008Announcement.html x_transferred
- exchange.xforce.ibmcloud.com: powerbroker-argv-bo(40872) vdb-entryx_transferred