suse · CVE-2003-0028

Quick triage

Priority: medium 公開: 2021-05-30 12:29:13 UTC Updated: 2026-04-18 20:50:32 UTC

参照: Official suse advisory, NVD, CVE.org · CVE 詳細

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2003-0028 severity moderate: SUSE including 5 source package names (libtirpc, libtirpc-devel, libtirpc-netconfig, libtirpc3, libtirpc3-32bit), 150 product×package rows across 38 product lines (SUSE CaaS Platform 4.0, SUSE Enterprise Storage 7, … (38 product lines)): Known Not Affected 150.

Description:

Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.

cvelogic Threat Intelligence