Lucene search

K
cveMitreCVE-2004-0769
HistoryAug 18, 2004 - 4:00 a.m.

CVE-2004-0769

2004-08-1804:00:00
mitre
web.nvd.nist.gov
29
cve-2004-0769
buffer overflow
lha
lharc
remote code execution
security vulnerability
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.128

Percentile

95.5%

Buffer overflow in LHA allows remote attackers to execute arbitrary code via long pathnames in LHarc format 2 headers for a .LHZ archive, as originally demonstrated using the “x” option but also exploitable through “l” and “v”, and fixed in header.c, a different issue than CVE-2004-0771.

Affected configurations

Nvd
Node
mozillabugzilla
VendorProductVersionCPE
mozillabugzilla*cpe:2.3:a:mozilla:bugzilla:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.128

Percentile

95.5%