security flaw
Published Apr 2, 2003
9.8
CRITICALCVSS 3.1
EPSS 58.13%
Description
Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on SunRPC including dietlibc, allows remote attackers to execute arbitrary code by passing a large number of arguments to xdr_array through RPC services such as rpc.cmsd and dmispd.
Affected products
No data.
No data.
Red Hat Enterprise Linux AS (Advanced Server) version 2.1
n/a
Fixed · RHSA-2002:173
Red Hat Enterprise Linux AS (Advanced Server) version 2.1
n/a
Fixed · RHSA-2002:167
Red Hat Linux 6.2
n/a
Fixed · RHSA-2002:166
Red Hat Linux 6.2
n/a
Fixed · RHSA-2002:172
Red Hat Linux 7.0
n/a
Fixed · RHSA-2002:172
Red Hat Linux 7.0
n/a
Fixed · RHSA-2002:166
Red Hat Linux 7.1
n/a
Fixed · RHSA-2003:212
Red Hat Linux 7.1
n/a
Fixed · RHSA-2002:172
Red Hat Linux 7.1
n/a
Fixed · RHSA-2003:168
Red Hat Linux 7.1
n/a
Fixed · RHSA-2002:166
Red Hat Linux 7.2
n/a
Fixed · RHSA-2002:166
Red Hat Linux 7.2
n/a
Fixed · RHSA-2002:172
Red Hat Linux 7.3
n/a
Fixed · RHSA-2002:172
Red Hat Linux 7.3
n/a
Fixed · RHSA-2002:166
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux AS (Advanced Server) version 2.1 | n/a | Fixed | RHSA-2002:173 |
| Red Hat Enterprise Linux AS (Advanced Server) version 2.1 | n/a | Fixed | RHSA-2002:167 |
| Red Hat Linux 6.2 | n/a | Fixed | RHSA-2002:166 |
| Red Hat Linux 6.2 | n/a | Fixed | RHSA-2002:172 |
| Red Hat Linux 7.0 | n/a | Fixed | RHSA-2002:172 |
| Red Hat Linux 7.0 | n/a | Fixed | RHSA-2002:166 |
| Red Hat Linux 7.1 | n/a | Fixed | RHSA-2003:212 |
| Red Hat Linux 7.1 | n/a | Fixed | RHSA-2002:172 |
| Red Hat Linux 7.1 | n/a | Fixed | RHSA-2003:168 |
| Red Hat Linux 7.1 | n/a | Fixed | RHSA-2002:166 |
| Red Hat Linux 7.2 | n/a | Fixed | RHSA-2002:166 |
| Red Hat Linux 7.2 | n/a | Fixed | RHSA-2002:172 |
| Red Hat Linux 7.3 | n/a | Fixed | RHSA-2002:172 |
| Red Hat Linux 7.3 | n/a | Fixed | RHSA-2002:166 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:C/I:C/A:C
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
NoneAutomatable
YesTechnical Impact
TotalDecision
n/aAssessed Feb 8, 2024 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (19 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 58.13% (0.58133) | 99.07th | v5 (v2026.06.15) |
| Jun 15, 2026 | 58.13% (0.58133) | 98.97th | v5 (v2026.06.15) |
| Dec 28, 2025 | 7.58% (0.07582) | 91.53th | v4 (v2025.03.14) |
| Dec 27, 2025 | 4.57% (0.04570) | 88.90th | v4 (v2025.03.14) |
| Oct 28, 2025 | 7.58% (0.07582) | 91.41th | v4 (v2025.03.14) |
| Oct 27, 2025 | 4.57% (0.04570) | 88.73th | v4 (v2025.03.14) |
| Oct 1, 2025 | 7.42% (0.07423) | 91.41th | v4 (v2025.03.14) |
| Mar 30, 2025 | 4.04% (0.04041) | 87.43th | v4 (v2025.03.14) |
| Mar 29, 2025 | 8.09% (0.08093) | 86.65th | v4 (v2025.03.14) |
| Mar 17, 2025 | 3.27% (0.03271) | 86.32th | v4 (v2025.03.14) |
| Dec 17, 2024 | 90.88% (0.90883) | 99.11th | v3 (v2023.03.01) |
| Aug 10, 2024 | 82.70% (0.82696) | 98.47th | v3 (v2023.03.01) |
| Feb 9, 2024 | 85.02% (0.85019) | 98.40th | v3 (v2023.03.01) |
| Jan 29, 2024 | 18.84% (0.18843) | 95.80th | v3 (v2023.03.01) |
| Apr 17, 2023 | 16.58% (0.16578) | 95.19th | v3 (v2023.03.01) |
| Mar 7, 2023 | 12.42% (0.12424) | 94.49th | v3 (v2023.03.01) |
| Mar 6, 2023 | 12.25% (0.12248) | 95.30th | v2 (v2022.01.01) |
| Apr 1, 2022 | 12.25% (0.12248) | 94.93th | v2 (v2022.01.01) |
| Feb 4, 2022 | 12.25% (0.12248) | 89.34th | v2 (v2022.01.01) |
References (42)
- ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-055.0.txt vendor-advisoryx_refsource_CALDERABroken Link
- ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-011.txt.asc vendor-advisoryx_refsource_NETBSDBroken Link
- ftp://patches.sgi.com/support/free/security/advisories/20020801-01-A vendor-advisoryx_refsource_SGIBroken Link
- ftp://patches.sgi.com/support/free/security/advisories/20020801-01-P vendor-advisoryx_refsource_SGIBroken Link
- http://archives.neohapsis.com/archives/aix/2002-q4/0002.html vendor-advisoryx_refsource_AIXAPARBroken Link
- http://archives.neohapsis.com/archives/bugtraq/2002-07/0514.html mailing-listx_refsource_BUGTRAQBroken Link
- http://archives.neohapsis.com/archives/hp/2002-q3/0077.html vendor-advisoryx_refsource_HPBroken Link
- http://bvlive01.iss.net/issEn/delivery/xforce/alertdetail.jsp?oid=20823 third-party-advisoryx_refsource_ISSBroken LinkVendor Advisory
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000515 vendor-advisoryx_refsource_CONECTIVABroken Link
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000535 vendor-advisoryx_refsource_CONECTIVABroken Link
- http://marc.info/?l=bugtraq&m=102813809232532&w=2 mailing-listx_refsource_BUGTRAQExploitMailing List
- http://marc.info/?l=bugtraq&m=102821785316087&w=2 mailing-listx_refsource_BUGTRAQExploitMailing List
- http://marc.info/?l=bugtraq&m=102821928418261&w=2 vendor-advisoryx_refsource_FREEBSDExploitMailing List
- http://marc.info/?l=bugtraq&m=102831443208382&w=2 mailing-listx_refsource_BUGTRAQExploitMailing List
- http://marc.info/?l=bugtraq&m=103158632831416&w=2 mailing-listx_refsource_BUGTRAQMailing List
- http://online.securityfocus.com/advisories/4402 vendor-advisoryx_refsource_HPBroken LinkThird Party AdvisoryVDB Entry
- http://online.securityfocus.com/archive/1/285740 mailing-listx_refsource_BUGTRAQBroken LinkThird Party AdvisoryVDB Entry
- http://rhn.redhat.com/errata/RHSA-2002-166.html vendor-advisoryx_refsource_REDHATBroken Link
- http://rhn.redhat.com/errata/RHSA-2002-172.html vendor-advisoryx_refsource_REDHATBroken Link
- http://www.cert.org/advisories/CA-2002-25.html third-party-advisoryx_refsource_CERTPatchThird Party AdvisoryUS Government Resource
- http://www.debian.org/security/2002/dsa-142 vendor-advisoryx_refsource_DEBIANBroken Link
- http://www.debian.org/security/2002/dsa-143 vendor-advisoryx_refsource_DEBIANBroken Link
- http://www.debian.org/security/2002/dsa-146 vendor-advisoryx_refsource_DEBIANBroken Link
- http://www.debian.org/security/2002/dsa-149 vendor-advisoryx_refsource_DEBIANBroken Link
- http://www.debian.org/security/2003/dsa-333 vendor-advisoryx_refsource_DEBIANBroken Link
- http://www.iss.net/security_center/static/9170.php vdb-entryx_refsource_XFBroken Link
- http://www.kb.cert.org/vuls/id/192995 third-party-advisoryx_refsource_CERT-VNThird Party AdvisoryUS Government Resource
- http://www.linuxsecurity.com/advisories/other_advisory-2399.html vendor-advisoryx_refsource_ENGARDEBroken Link
- http://www.mandrakesoft.com/security/advisories?name=MDKSA-2002:057 vendor-advisoryx_refsource_MANDRAKEBroken Link
- http://www.redhat.com/support/errata/RHSA-2002-167.html vendor-advisoryx_refsource_REDHATBroken Link
- http://www.redhat.com/support/errata/RHSA-2002-173.html vendor-advisoryx_refsource_REDHATBroken Link
- http://www.redhat.com/support/errata/RHSA-2003-168.html vendor-advisoryx_refsource_REDHATBroken Link
- http://www.redhat.com/support/errata/RHSA-2003-212.html vendor-advisoryx_refsource_REDHATBroken Link
- http://www.securityfocus.com/bid/5356 vdb-entryx_refsource_BIDBroken LinkThird Party AdvisoryVDB Entry
- https://access.redhat.com/security/cve/CVE-2002-0391 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1616771 Issue Tracking
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-057 vendor-advisoryx_refsource_MSThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2002-0391
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A42 vdb-entrysignaturex_refsource_OVALBroken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4728 vdb-entrysignaturex_refsource_OVALBroken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9 vdb-entrysignaturex_refsource_OVALBroken Link
- https://www.cve.org/CVERecord?id=CVE-2002-0391
Change history (0)
No recorded changes yet.