7.5
CVSSv2

CVE-2004-1915

Published: 08/04/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the parse_all_client_messages function in LCDproc 0.4.x up to 0.4.4 allows remote malicious users to execute arbitrary code via a large number of arguments.

Vulnerable Product Search on Vulmon Subscribe to Product

lcdproc lcdproc 4.0

lcdproc lcdproc 4.3

lcdproc lcdproc 0.4

lcdproc lcdproc 4.1

lcdproc lcdproc 4.4

lcdproc lcdproc 0.4.1 r1

lcdproc lcdproc 4.2

lcdproc lcdproc 0.3

Exploits

source: wwwsecurityfocuscom/bid/10085/info LCDproc Server (LCDd) has been reported to be prone to multiple remote vulnerabilities The first issue is reported to exist in the parse_all_client_messages() function of parsec, and is due to a lack of sufficient boundary checks performed on user-supplied arguments A remote attacker may expl ...