CVE-2005-3903
iDEFENSE Security Advisory 2005-12-12.t
Severity Score
7.8
*CVSS v3
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Buffer overflow in uidadmin in SCO Unixware 7.1.3 and 7.1.4 allows local users to execute arbitrary code via a -S (scheme) argument that specifies a large file, a different vulnerability than CVE-2001-1063.
Local exploitation of a buffer overflow vulnerability in the uidadmin binary included in multiple versions of The SCO Group Inc.'s Unixware allows attackers to gain root privileges. iDefense has confirmed the existence of this vulnerability in SCO Unixware versions 7.1.3 and 7.1.4. All previous versions of SCO Unixware are suspected to be vulnerable.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2005-11-29 CVE Reserved
- 2005-12-14 CVE Published
- 2024-08-07 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://secunia.com/advisories/18660 | Third Party Advisory | |
http://securityreason.com/securityalert/251 | Third Party Advisory | |
http://support.avaya.com/elmodocs2/security/ASA-2006-034.htm | X_refsource_confirm | |
http://www.securityfocus.com/bid/15811 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23550 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/17986 | 2017-07-20 | |
http://securitytracker.com/id?1015342 | 2017-07-20 | |
http://www.idefense.com/application/poi/display?id=350&type=vulnerabilities&flashstatus=true | 2017-07-20 |
URL | Date | SRC |
---|---|---|
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.54 | 2017-07-20 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sco Search vendor "Sco" | Unixware Search vendor "Sco" for product "Unixware" | 7.1.3 Search vendor "Sco" for product "Unixware" and version "7.1.3" | - |
Affected
| ||||||
Sco Search vendor "Sco" | Unixware Search vendor "Sco" for product "Unixware" | 7.1.4 Search vendor "Sco" for product "Unixware" and version "7.1.4" | - |
Affected
|