PT-2004-1663 · Gopher · Gopherd

Jaguar

·

Published

2004-12-31

·

Updated

2008-09-05

·

CVE-2004-0560

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions gopherd version 3.0.3
Description The issue is related to an integer overflow in the gopher daemon. This can be triggered by remote attackers sending crafted content of a certain size, potentially leading to a denial of service and possibly the execution of arbitrary code.
Recommendations For gopherd version 3.0.3, update to a newer version that addresses the integer overflow issue to prevent potential denial of service and arbitrary code execution.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0560
DSA-638-1

Affected Products

Gopherd