CVE-2008-1056

Multiple stack-based buffer overflows in Symark PowerBroker 2.8 through 5.0.1 allow local users to gain privileges via a long argv[0] string when executing (1) pbrun, (2) pbsh, or (3) pbksh. NOTE: the product is often installed in environments with trust relationships that facilitate subsequent remote compromises.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:symark:powerbroker:2.8:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.2:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.5:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:4.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:5.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:5.01:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-02-28 19:44

Updated : 2024-02-04 17:13


NVD link : CVE-2008-1056

Mitre link : CVE-2008-1056

CVE.ORG link : CVE-2008-1056


JSON object : View

Products Affected

symark

  • powerbroker
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer