7.5
CVSSv2

CVE-2004-1915

Published: 08/04/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the parse_all_client_messages function in LCDproc 0.4.x up to 0.4.4 allows remote malicious users to execute arbitrary code via a large number of arguments.

Vulnerable Product Search on Vulmon Subscribe to Product

lcdproc lcdproc 0.4

lcdproc lcdproc 0.4.1_r1

lcdproc lcdproc 4.2

lcdproc lcdproc 4.3

lcdproc lcdproc 4.0

lcdproc lcdproc 4.1

lcdproc lcdproc 0.3

lcdproc lcdproc 4.4

Exploits

source: wwwsecurityfocuscom/bid/10085/info LCDproc Server (LCDd) has been reported to be prone to multiple remote vulnerabilities The first issue is reported to exist in the parse_all_client_messages() function of parsec, and is due to a lack of sufficient boundary checks performed on user-supplied arguments A remote attacker may expl ...