VDB
CVE-2004-0008
CVE-2004-0008
PUBLISHED
CVSS 7.5 HIGH
Integer overflow in Gaim 0.74 and earlier, and Ultramagnetic before 0.81, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.
EPSS 8.50% · 94.9th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
8.50%
94.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| ultramagnetic | ultramagnetic | 0 |
| rob_flynn | gaim | 0 |
Timeline
- Jan 29, 2004 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 21, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 10, 2023 EPSS Score
- Apr 4, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
- Sep 9, 2023 EPSS Score
References
- oval:org.mitre.oval:def:820 vdb
- 3734 vdb
- gaim-directim-bo(14937) vdb
- RHSA-2004:045 vendor-advisory
- 20040127 [slackware-security] GAIM security update (SSA:2004-026-01) mailing-list
- 20040201-01-U vendor-advisory
- RHSA-2004:033 vendor-advisory
- VU#779614 third-party-advisory
- ftp://patches.sgi.com/support/free/security/advisories/20040202-01-U.asc technical
- http://archives.neohapsis.com/archives/fulldisclosure/2004-01/0994.html technical
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000813 technical
- http://marc.info/?l=bugtraq&m=107522432613022&w=2 technical
- http://security.e-matters.de/advisories/012004.html patch
- http://security.gentoo.org/glsa/glsa-200401-04.xml technical
- http://www.mandriva.com/security/advisories?name=MDKSA-2004:006 technical
- http://www.redhat.com/support/errata/RHSA-2004-032.html patch
- http://www.securitytracker.com/id?1008850 technical
- http://ultramagnetic.sourceforge.net/advisories/001.html patch
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9469 technical
- https://nvd.nist.gov/vuln/detail/CVE-2004-0008 advisory
…and 2 more