Lucene search

K
cveMitreCVE-2004-0991
HistoryJan 19, 2005 - 5:00 a.m.

CVE-2004-0991

2005-01-1905:00:00
mitre
web.nvd.nist.gov
35
nvd
cve-2004-0991
information security
buffer overflow
arbitrary code execution
remote attack

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.098

Percentile

94.8%

Buffer overflow in mpg123 before 0.59s-r9 allows remote attackers to execute arbitrary code via frame headers in MP2 or MP3 files.

Affected configurations

Nvd
Node
mpg123mpg123Match0.59m
OR
mpg123mpg123Match0.59n
OR
mpg123mpg123Match0.59o
OR
mpg123mpg123Match0.59p
OR
mpg123mpg123Match0.59q
OR
mpg123mpg123Match0.59r
OR
mpg123mpg123Match0.59s
Node
susesuse_linuxMatch8.0
OR
susesuse_linuxMatch8.0i386
OR
susesuse_linuxMatch8.1
OR
susesuse_linuxMatch8.2
OR
susesuse_linuxMatch9.0
OR
susesuse_linuxMatch9.0x86_64
OR
susesuse_linuxMatch9.1
OR
susesuse_linuxMatch9.2
VendorProductVersionCPE
mpg123mpg1230.59mcpe:2.3:a:mpg123:mpg123:0.59m:*:*:*:*:*:*:*
mpg123mpg1230.59ncpe:2.3:a:mpg123:mpg123:0.59n:*:*:*:*:*:*:*
mpg123mpg1230.59ocpe:2.3:a:mpg123:mpg123:0.59o:*:*:*:*:*:*:*
mpg123mpg1230.59pcpe:2.3:a:mpg123:mpg123:0.59p:*:*:*:*:*:*:*
mpg123mpg1230.59qcpe:2.3:a:mpg123:mpg123:0.59q:*:*:*:*:*:*:*
mpg123mpg1230.59rcpe:2.3:a:mpg123:mpg123:0.59r:*:*:*:*:*:*:*
mpg123mpg1230.59scpe:2.3:a:mpg123:mpg123:0.59s:*:*:*:*:*:*:*
susesuse_linux8.0cpe:2.3:o:suse:suse_linux:8.0:*:*:*:*:*:*:*
susesuse_linux8.0cpe:2.3:o:suse:suse_linux:8.0:*:i386:*:*:*:*:*
susesuse_linux8.1cpe:2.3:o:suse:suse_linux:8.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 151

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.098

Percentile

94.8%