CVE Reference: CVE-2004-0083

NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0083

Description:
Buffer overflow in ReadFontAlias from dirfile.c of XFree86 4.1.0 through 4.3.0 allows local users and remote attackers to execute arbitrary code via a font alias file (font.alias) with a long token, a different vulnerability than CVE-2004-0084 and CVE-2004-0106.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/15130

SUSE
  http://www.novell.com/linux/security/advisories/2004_06_xf86.html

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-57768-1

SLACKWARE
  http://www.slackware.com/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.405053

REDHAT
  http://www.redhat.com/support/errata/RHSA-2004-061.html
  http://www.redhat.com/support/errata/RHSA-2004-059.html
  http://www.redhat.com/support/errata/RHSA-2004-060.html

OVAL
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:806
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:830
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9612

MISC
  http://www.idefense.com/application/poi/display?id=72

MANDRAKE
  http://www.mandriva.com/security/advisories?name=MDKSA-2004:012

GENTOO
  http://security.gentoo.org/glsa/glsa-200402-02.xml

FEDORA
  http://marc.theaimsgroup.com/?l=bugtraq&m=110979666528890&w=2

DEBIAN
  http://www.debian.org/security/2004/dsa-443

CONFIRM
  http://www.xfree86.org/cvs/changes

CONECTIVA
  http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000821

CERT-VN
  820006

BUGTRAQ
  http://marc.theaimsgroup.com/?l=bugtraq&m=107653324115914&w=2
  http://marc.theaimsgroup.com/?l=bugtraq&m=107644835523678&w=2

BID
  9636


Return to the previous page.