10

CVE-2004-0084

Exploit

Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a different vulnerability than CVE-2004-0083 and CVE-2004-0106.

Data is provided by the National Vulnerability Database (NVD)
Xfree86 ProjectX11r6 Version4.1.0
Xfree86 ProjectX11r6 Version4.1.11
Xfree86 ProjectX11r6 Version4.1.12
Xfree86 ProjectX11r6 Version4.2.0
Xfree86 ProjectX11r6 Version4.2.1
Xfree86 ProjectX11r6 Version4.2.1 Editionerrata
Xfree86 ProjectX11r6 Version4.3.0
OpenbsdOpenbsd Version3.3
OpenbsdOpenbsd Version3.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 14.63% 0.939
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C