Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2004-0453

Overview

Vulnerability Score 7.2 7.2
CVE Id CVE-2004-0453
Last Modified 05 Sep 2008 04:38:27
Published 06 Aug 2004 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2004-0453

Summary

Format string vulnerability in the monitor "memory dump" command in VICE 1.6 to 1.14 allows local users to cause a denial of service (emulator crash) and possibly execute arbitrary code via format string specifiers in an output string.

Vulnerable Systems

Application

  • Vice 1.13

  • Vice 1.14

  • Vice 1.6


References

BID - 10543

XF - vice-memory-dump-format-string(16404)

BUGTRAQ - 20040614 VICE emulator format string vulnerability


Last Updated: 27 May 2016 10:38:36