10
CVE-2004-0461
- EPSS 9.74%
- Veröffentlicht 06.08.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13, when compiled in environments that do not provide the vsnprintf function, uses C include files that define vsnprintf to use the less safe vsprintf function, which can lead to buffer overflow vulnerabilities that enable a denial of service (server crash) and possibly execute arbitrary code.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Infoblox ≫ Dns One Appliance Version2.3.1_r5
Infoblox ≫ Dns One Appliance Version2.4.0.8
Infoblox ≫ Dns One Appliance Version2.4.0.8a
Suse ≫ Suse Email Server Versioniii
Mandrakesoft ≫ Mandrake Linux Version9.0
Mandrakesoft ≫ Mandrake Linux Version9.1
Mandrakesoft ≫ Mandrake Linux Version9.1 Editionppc
Mandrakesoft ≫ Mandrake Linux Version9.2
Mandrakesoft ≫ Mandrake Linux Version9.2 Editionamd64
Mandrakesoft ≫ Mandrake Linux Version10.0
Mandrakesoft ≫ Mandrake Linux Version10.0 Editionamd64
Redhat ≫ Fedora Core Versioncore_2.0
Suse ≫ Suse Linux Version7 Editionenterprise_server
Suse ≫ Suse Linux Version8 Editionenterprise_server
Suse ≫ Suse Linux Version8.0
Suse ≫ Suse Linux Version8.0 Editioni386
Suse ≫ Suse Linux Version8.1
Suse ≫ Suse Linux Version8.2
Suse ≫ Suse Linux Version9.0
Suse ≫ Suse Linux Version9.0 Editionx86_64
Suse ≫ Suse Linux Version9.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 9.74% | 0.921 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|