CVE Vulnerabilities

CVE-2004-0914

Published: Jan 10, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple integer overflows, (2) out-of-bounds memory accesses, (3) directory traversal, (4) shell metacharacter, (5) endless loops, and (6) memory leaks, which could allow remote attackers to obtain sensitive information, cause a denial of service (application crash), or execute arbitrary code via a certain XPM image file. NOTE: it is highly likely that this candidate will be SPLIT into other candidates in the future, per CVEs content decisions.

Affected Software

NameVendorStart VersionEnd Version
LesstifLesstif0.93 (including)0.93 (including)
LesstifLesstif0.93.12 (including)0.93.12 (including)
LesstifLesstif0.93.18 (including)0.93.18 (including)
LesstifLesstif0.93.34 (including)0.93.34 (including)
LesstifLesstif0.93.36 (including)0.93.36 (including)
LesstifLesstif0.93.40 (including)0.93.40 (including)
LesstifLesstif0.93.91 (including)0.93.91 (including)
LesstifLesstif0.93.94 (including)0.93.94 (including)
LesstifLesstif0.93.96 (including)0.93.96 (including)
X11r6X.org6.7.0 (including)6.7.0 (including)
X11r6X.org6.8 (including)6.8 (including)
X11r6X.org6.8.1 (including)6.8.1 (including)
X11r6Xfree86_project3.3 (including)3.3 (including)
X11r6Xfree86_project3.3.2 (including)3.3.2 (including)
X11r6Xfree86_project3.3.3 (including)3.3.3 (including)
X11r6Xfree86_project3.3.4 (including)3.3.4 (including)
X11r6Xfree86_project3.3.5 (including)3.3.5 (including)
X11r6Xfree86_project3.3.6 (including)3.3.6 (including)
X11r6Xfree86_project4.0 (including)4.0 (including)
X11r6Xfree86_project4.0.1 (including)4.0.1 (including)
X11r6Xfree86_project4.0.2.11 (including)4.0.2.11 (including)
X11r6Xfree86_project4.0.3 (including)4.0.3 (including)
X11r6Xfree86_project4.1.0 (including)4.1.0 (including)
X11r6Xfree86_project4.1.11 (including)4.1.11 (including)
X11r6Xfree86_project4.1.12 (including)4.1.12 (including)
X11r6Xfree86_project4.2.0 (including)4.2.0 (including)
X11r6Xfree86_project4.2.1 (including)4.2.1 (including)
X11r6Xfree86_project4.3.0 (including)4.3.0 (including)
Red Hat Enterprise Linux 3RedHatopenmotif-0:2.2.3-4.RHEL3.4*
Red Hat Enterprise Linux 3RedHatopenmotif21-0:2.1.30-9.RHEL3.4*
Red Hat Enterprise Linux 3RedHatXFree86-0:4.3.0-78.EL*
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Enterprise Linux ES version 2.1RedHat*
Red Hat Enterprise Linux ES version 2.1RedHat*
Red Hat Enterprise Linux WS version 2.1RedHat*
Red Hat Enterprise Linux WS version 2.1RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*
Red Hat Network Satellite Server v 4.2RedHatjabberd-0:2.0s10-3.38.rhn*
Red Hat Network Satellite Server v 4.2RedHatjava-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4*
Red Hat Network Satellite Server v 4.2RedHatjfreechart-0:0.9.20-3.rhn*
Red Hat Network Satellite Server v 4.2RedHatopenmotif21-0:2.1.30-11.RHEL4.6*
Red Hat Network Satellite Server v 4.2RedHatperl-Crypt-CBC-0:2.24-1.el4*
Red Hat Network Satellite Server v 4.2RedHatrhn-apache-0:1.3.27-36.rhn.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modjk-0:1.2.23-2rhn.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modperl-0:1.29-16.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modssl-0:2.8.12-8.rhn.10.rhel4*
Red Hat Network Satellite Server v 4.2RedHattomcat5-0:5.0.30-0jpp_10rh*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjabberd-0:2.0s10-3.37.rhn*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjava-1.4.2-ibm-0:1.4.2.10-1jpp.2.el3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjfreechart-0:0.9.20-3.rhn*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatopenmotif21-0:2.1.30-9.RHEL3.8*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatperl-Crypt-CBC-0:2.24-1.el3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-apache-0:1.3.27-36.rhn.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modjk-0:1.2.23-2rhn.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modperl-0:1.29-16.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modssl-0:2.8.12-8.rhn.10.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHattomcat5-0:5.0.30-0jpp_10rh*
Lesstif1-1Ubuntudapper*
Lesstif1-1Ubuntuedgy*
Lesstif2Ubuntudapper*
Lesstif2Ubuntudevel*
Lesstif2Ubuntuedgy*
Lesstif2Ubuntufeisty*
OpenmotifUbuntudapper*
OpenmotifUbuntudevel*
OpenmotifUbuntuedgy*
OpenmotifUbuntufeisty*

References