CVE-2002-1387

NameCVE-2002-1387
DescriptionThe spray mode in traceroute-nanog (aka traceroute-ng) may allow local users to overwrite arbitrary memory locations via an array index overflow using the nprobes (number of probes) argument.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SuSE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-254
NVD severitymedium (attack range: local)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
traceroute-nanogsource(unstable)6.3.0-1medium
traceroute-nanogsourcewoody6.1.1-1.2mediumDSA-254

Search for package or bug name: Reporting problems