PT-2005-1064 · Midnight Commander+1 · Mc+2

Published

2005-01-22

·

Updated

2022-01-19

·

CVE-2004-1009

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions mc versions 4.5.51 through 4.5.55 Midnight commander version 4.5.55 and earlier
Description The issue affects the confidentiality, integrity, and availability of protected information. It can be exploited remotely, potentially leading to a denial of service, such as an infinite loop, via unknown attack vectors.
Recommendations For mc versions 4.5.51 through 4.5.55, consider disabling the vulnerable components until a patch is available. For Midnight commander version 4.5.55 and earlier, restrict access to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALT-PU-2022-1068
ALT-PU-2022-1089
BDU:2015-06202
BDU:2015-06415
BDU:2015-06416
CVE-2004-1009
DSA-639-1

Affected Products

Alt Linux
Midnight Commander
Mc