10
CVE-2004-1034
- EPSS 5.93%
- Veröffentlicht 01.03.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long Content-Type header for a Real Audio Media (.ram) playlist file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Kaffeine ≫ Kaffeine Player Version0.4.2
Kaffeine ≫ Kaffeine Player Version0.4.3
Kaffeine ≫ Kaffeine Player Version0.4.3b
Kaffeine ≫ Kaffeine Player Version0.5_rc1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.93% | 0.896 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|