CVE-2000-0504: Medium severity Gnome gdm vulnerability
Published Jun 19, 2000
·Updated
libICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the SKIPSTRING macro.
Affected Software
13 affected components
Gnome gdm=1.0
Gnome gdm=1.1
Open Group X=11.0r5
Open Group X=11.0r6
Open Group X=11.0r6.1
Open Group X=11.0r6.2
Open Group X=11.0r6.3
Open Group X=11.0r6.4
Xfree86 Project X11r6=3.3.3
Xfree86 Project X11r6=3.3.4
Xfree86 Project X11r6=3.3.5
Xfree86 Project X11r6=3.3.6
Xfree86 Project X11r6=4.0
Remediation
Patch Available
Event History
Jun 19, 2000
CVE Published
04:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0504?
CVE-2000-0504 is classified as a denial of service vulnerability.
2
How do I fix CVE-2000-0504?
To fix CVE-2000-0504, upgrade your XFree86 installation to a version that has addressed this vulnerability.
3
Which software is affected by CVE-2000-0504?
CVE-2000-0504 affects multiple versions of XFree86, Open Group X, and GNOME libraries.
4
What type of attack does CVE-2000-0504 exploit?
CVE-2000-0504 exploits an improper check in the SKIP_STRING macro to cause a denial of service.
5
Can CVE-2000-0504 be exploited remotely?
Yes, CVE-2000-0504 can be exploited by remote attackers.