CVE-2008-1056

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
28/02/2008
Last modified:
09/04/2025

Description

Multiple stack-based buffer overflows in Symark PowerBroker 2.8 through 5.0.1 allow local users to gain privileges via a long argv[0] string when executing (1) pbrun, (2) pbsh, or (3) pbksh. NOTE: the product is often installed in environments with trust relationships that facilitate subsequent remote compromises.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:symark:powerbroker:2.8:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.2:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.5:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:4.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:5.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:5.01:*:*:*:*:*:*:*