7.2

CVE-2004-0834

Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute arbitrary code via (1) modem_run, (2) pppoa2, or (3) pppoa3.

Data is provided by the National Vulnerability Database (NVD)
SpeedtouchSpeedtouch Usb Driver Version1.2_beta1
SpeedtouchSpeedtouch Usb Driver Version1.2_beta2
SpeedtouchSpeedtouch Usb Driver Version1.2_beta3
GentooLinux Version1.4
MandrakesoftMandrake Linux Version8.2
MandrakesoftMandrake Linux Version8.2 Editionppc
MandrakesoftMandrake Linux Version9.0
MandrakesoftMandrake Linux Version9.1
MandrakesoftMandrake Linux Version9.1 Editionppc
MandrakesoftMandrake Linux Version9.2
MandrakesoftMandrake Linux Version9.2 Editionamd64
MandrakesoftMandrake Linux Version10.0
MandrakesoftMandrake Linux Version10.0 Editionamd64
MandrakesoftMandrake Linux Version10.1
MandrakesoftMandrake Linux Version10.1 Editionx86_64
MandrakesoftMandrake Linux Corporate Server Version2.1 Editionx86_64
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.05% 0.126
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C