4.6
CVSSv2

CVE-2004-0402

Published: 07/07/2004 Updated: 11/07/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in xpcd-svga in xpcd prior to 2.08, and possibly other versions, may allow local users to execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

xpcd xpcd 2.08

mandrakesoft mandrake linux 10.0

mandrakesoft mandrake linux 9.2

Vendor Advisories

Jaguar discovered a vulnerability in one component of xpcd, a PhotoCD viewer xpcd-svga, part of xpcd which uses svgalib to display graphics on the console, would copy user-supplied data of arbitrary length into a fixed-size buffer in the pcd_open function For the current stable distribution (woody) this problem has been fixed in version 208-8woo ...