Secunia Logo
 
CVE Reference: CVE-2004-0946
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0946

Description:
rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stack-based buffer overflow and allows remote attackers to execute arbitrary code via a crafted NFS request.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/18455

SAID
  Secunia Advisory: SA13440

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-014.html
  http://www.redhat.com/support/errata/RHSA-2004-583.html

MISC
  http://bugs.gentoo.org/show_bug.cgi?id=72113

MANDRAKE
  http://www.mandrakesoft.com/security/advisories?name=MDKSA-2005:005

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200412-08.xml

FEDORA
  http://www.securityfocus.com/archive/1/archive/1/426072/30/6740/threaded

CERT-VN
  698302

BID
  11911


Return to the previous page.