DEBIAN-CVE-2003-0390

Source
https://security-tracker.debian.org/tracker/CVE-2003-0390
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2003-0390.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2003-0390
Upstream
Published
2003-07-02T04:00:00Z
Modified
2026-09-01T20:01:05Z
Summary
[none]
Details

Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, may allow local users to execute arbitrary code via long command line options that are fed into macros such as opt_warn_2, as used in functions such as opt_atoi.

References

Affected packages

Debian:12 / opt

Package

Name
opt
Purl
pkg:deb/debian/opt?arch=source&distro=bookworm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
3.19

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2003-0390.json"

Debian:13 / opt

Package

Name
opt
Purl
pkg:deb/debian/opt?arch=source&distro=trixie

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
3.19

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2003-0390.json"

Debian:14 / opt

Package

Name
opt
Purl
pkg:deb/debian/opt?arch=source&distro=forky

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
3.19

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2003-0390.json"