← Vulnerability feed

Vulnerability record · CVE-2002-0679 · published 5 September 2002

CVE-2002-0679: Caldera unixware vulnerability

Caldera · Unixware

Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.

10.0 CVSS 2.0 High EPSS 23% · top 2.3%
10.0CVSS 2.0 base score
23%EPSS exploitation probability, 30 days
NoNot in CISA KEV
8Affected product versions listed by NVD
22References
16 Jun 2026Last modified by NVD

Description

Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

8 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://marc.info/?l=bugtraq&m=102917002523536&w=2
http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert%2F46366&zone_32=category%3Asecurity
http://www-1.ibm.com/support/search.wss?rs=0&q=IY32792&apar=only
http://www-1.ibm.com/support/search.wss?rs=0&q=IY32793&apar=only
http://www.cert.org/advisories/CA-2002-26.html US Government Resource
http://www.iss.net/security_center/static/9822.php
http://www.kb.cert.org/vuls/id/387387 PatchThird Party AdvisoryUS Government Resource
http://www.securityfocus.com/bid/5444
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0207-199
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A177
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A192
http://marc.info/?l=bugtraq&m=102917002523536&w=2
http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert%2F46366&zone_32=category%3Asecurity
http://www-1.ibm.com/support/search.wss?rs=0&q=IY32792&apar=only
http://www-1.ibm.com/support/search.wss?rs=0&q=IY32793&apar=only
http://www.cert.org/advisories/CA-2002-26.html US Government Resource
http://www.iss.net/security_center/static/9822.php
http://www.kb.cert.org/vuls/id/387387 PatchThird Party AdvisoryUS Government Resource
http://www.securityfocus.com/bid/5444
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0207-199
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A177
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A192

Track CVE-2002-0679 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2012-1823PHP-CGI query string option injection enables remote code executionPHP versions before 5.3.12 and 5.4.x before 5.4.2, when run as a CGI script (php-cgi), mishandle query strings that lack an equals sign, allowing com…KEVEPSS 100%analysed10.0CVE-2024-56346Ibm aix vulnerabilityIBM AIX 7.2 and 7.3 nimesis NIM master service could allow a remote attacker to execute arbitrary commands due to improper process controls.EPSS 1.1%10.0CVE-2012-0131Hp distributed computing environment vulnerabilityDistributed Computing Environment (DCE) 1.8 and 1.9 on HP HP-UX B.11.11 and B.11.23 allows remote attackers to cause a denial of service or possibly …EPSS 7.4%10.0CVE-2010-3187Ibm aix memory buffer overflow vulnerabilityBuffer overflow in ftpd in IBM AIX 5.3 and earlier allows remote attackers to execute arbitrary code via a long NLST command.EPSS 20%10.0CVE-2010-1039Hp nfs\/oncplus vulnerabilityFormat string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCplus B.11.…EPSS 20%10.0CVE-2009-3699IBM AIX and VIOS rpc.cmsd XDR string stack buffer overflowA stack-based buffer overflow exists in libcsa.a, the calendar daemon library used by rpc.cmsd, in IBM AIX 5.x through 5.3.10, 6.x through 6.1.3, and…EPSS 62%analysed10.0CVE-2009-3517Ibm aix vulnerabilitynfs.ext in IBM AIX 5.3.x through 5.3.9 and 6.1.0 through 6.1.2 does not properly use the nfs_portmon setting, which allows remote attackers to bypass…EPSS 4.4%10.0CVE-2008-1668Hp-ux permissions and access controls vulnerabilityftpd.c in (1) wu-ftpd 2.4.2 and (2) ftpd in HP HP-UX B.11.11 assigns uid 0 to the FTP client in certain operating-system misconfigurations in which P…EPSS 4.5%

Source: NIST National Vulnerability Database (record CVE-2002-0679), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.