VDB
CVE-2014-0004
CVE-2014-0004
PUBLISHED
CVSS 6.900000095367432 MEDIUM
Stack-based buffer overflow in udisks before 1.0.5 and 2.x before 2.1.3 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long mount point.
EPSS 0.43% · 35.1th percentile
Risk Scores
CVSS 2.0
6.900000095367432
EPSS Score
0.43%
35.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| freedesktop | udisks | 1.0.1, 2.1.0, 2.1.1 |
| canonical | ubuntu_linux | 12.10, 12.04, 13.10 |
Timeline
- Mar 11, 2014 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 21, 2022 EPSS Score
- Jul 15, 2022 EPSS Score
- Sep 6, 2022 EPSS Score
- Oct 29, 2022 EPSS Score
- Dec 21, 2022 EPSS Score
- Feb 3, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 7, 2023 EPSS Score
- May 30, 2023 EPSS Score
References
- openSUSE-SU-2014:0390 vendor-advisory
- openSUSE-SU-2014:0389 vendor-advisory
- openSUSE-SU-2014:0388 vendor-advisory
- RHSA-2014:0293 vendor-advisory
- [devkit-devel] 20140310 udisks 2.1.3 / 1.0.5 security updates mailing-list
- USN-2142-1 vendor-advisory
- 66081 vdb
- DSA-2872 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2014-0004 advisory
- https://access.redhat.com/errata/RHSA-2014:0293 url
- https://access.redhat.com/security/cve/CVE-2014-0004 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1049703 url