CVE-2004-0094: High severity Xfree86 Project X11r6 vulnerability
Published Mar 15, 2004
·Updated
Integer signedness errors in XFree86 4.1.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code when using the GLX extension and Direct Rendering Infrastructure (DRI).
Affected Software
7 affected components
Xfree86 Project X11r6=4.1.0
Xfree86 Project X11r6=4.3.0
Xfree86 Project X11r6=4.2.1
Xfree86 Project X11r6=4.2.0
Xfree86 Project X11r6=4.1.12
Xfree86 Project X11r6=4.2.1
Xfree86 Project X11r6=4.1.11
Remediation
Patch Available
Event History
Mar 15, 2004
CVE Published
05:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0094?
CVE-2004-0094 is classified as a moderate vulnerability due to potential denial of service and arbitrary code execution risks.
2
How do I fix CVE-2004-0094?
To fix CVE-2004-0094, update XFree86 to the latest patched version available for your system.
3
What systems are affected by CVE-2004-0094?
CVE-2004-0094 affects XFree86 versions 4.1.0, 4.1.11, 4.1.12, 4.2.0, 4.2.1, and 4.3.0.
4
What type of vulnerability is CVE-2004-0094?
CVE-2004-0094 is an integer signedness error vulnerability.
5
Can CVE-2004-0094 lead to unauthorized access?
Yes, CVE-2004-0094 can potentially allow remote attackers to gain unauthorized access through denial of service and exploit execution.