Lucene search

K
cve[email protected]CVE-2004-0941
HistoryFeb 09, 2005 - 5:00 a.m.

CVE-2004-0941

2005-02-0905:00:00
web.nvd.nist.gov
47
cve-2004-0941
buffer overflow
gd graphics library
libgd
remote code execution
image files
gdmalloc function

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

8.1 High

AI Score

Confidence

High

0.217 Low

EPSS

Percentile

96.5%

Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of vulnerabilities than CVE-2004-0990.

Affected configurations

NVD
Node
gd_graphics_librarygdlibMatch1.8.4
OR
gd_graphics_librarygdlibMatch2.0.1
OR
gd_graphics_librarygdlibMatch2.0.20
OR
gd_graphics_librarygdlibMatch2.0.21
OR
gd_graphics_librarygdlibMatch2.0.22
OR
gd_graphics_librarygdlibMatch2.0.23
OR
gd_graphics_librarygdlibMatch2.0.26
OR
gd_graphics_librarygdlibMatch2.0.27
OR
gd_graphics_librarygdlibMatch2.0.28
OR
gd_graphics_librarygdlibMatch2.0.33
Node
trustixsecure_linuxMatch1.5
OR
trustixsecure_linuxMatch2.0
OR
trustixsecure_linuxMatch2.1
OR
trustixsecure_linuxMatch2.2

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

8.1 High

AI Score

Confidence

High

0.217 Low

EPSS

Percentile

96.5%