← back
CVE-2003-0849

CVE-2003-0849

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 11%
from disclosure to weapon0 days
Published on NVDOct 9
1st PoCSep 25
exploitation probability
11%top 5% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain packets with modified length values, which is trusted by the ReceiveTransaction function when using a buffer provided by the BusyWithConnection function.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.