VDB
CVE-2005-0605
CVE-2005-0605
PUBLISHED
CVSS 7.5 HIGH
scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.
EPSS 4.51% · 90.6th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
4.51%
90.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| xfree86_project | x11r6 | 4.0.2.11, 3.3.5, 3.3.6 |
| redhat | enterprise_linux | 4.0, 3.0, 3.0 |
| redhat | fedora_core | core_2.0, core_3.0 |
| sgi | propack | 3.0 |
| n/a | n/a | n/a |
| mandrakesoft | mandrake_linux_corporate_server | 3.0, 2.1, 3.0 |
| suse | suse_linux | 6.2, 8.0, 8.1 |
| lesstif | lesstif | 0.93.94 |
| mandrakesoft | mandrake_linux | 10.1, 10.0, 10.2 |
| x.org | x11r6 | 6.8, 6.7.0, 6.8.1 |
| altlinux | alt_linux | 2.3, 2.3 |
| redhat | enterprise_linux_desktop | 3.0, 4.0 |
Timeline
- Mar 2, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
References
- RHSA-2005:412 vendor-advisory
- FLSA-2006:152803 vendor-advisory
- oval:org.mitre.oval:def:10411 vdb
- USN-92-1 vendor-advisory
- 1013339 vdb
- https://bugs.freedesktop.org/attachment.cgi?id=1909 url
- APPLE-SA-2005-08-15 vendor-advisory
- GLSA-200503-08 vendor-advisory
- 12714 vdb
- ftp://patches.sgi.com/support/free/security/advisories/20060403-01-U technical
- http://secunia.com/advisories/18049 technical
- http://secunia.com/advisories/19624 technical
- http://www.debian.org/security/2005/dsa-723 patch
- ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.5/SCOSA-2006.5.txt technical
- ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.57/SCOSA-2005.57.txt technical
- http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html technical
- http://secunia.com/advisories/18316 technical
- http://www.gentoo.org/security/en/glsa/glsa-200503-15.xml patch
- http://www.redhat.com/support/errata/RHSA-2005-044.html technical
- http://www.redhat.com/support/errata/RHSA-2005-473.html technical
…and 10 more