CVE-2004-0333: Buffer Overflow
Buffer overflow in the UUDeview package, as used in WinZip 6.2 through WinZip 8.1 SR-1, and possibly other packages, allows remote attackers to execute arbitrary code via a MIME archive with certain long MIME parameters.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0333?
CVE-2004-0333 is considered a critical vulnerability due to its potential to allow remote arbitrary code execution.
How do I fix CVE-2004-0333?
To mitigate CVE-2004-0333, users should update to the latest version of WinZip or UUDeview that addresses this buffer overflow issue.
Which versions of software are affected by CVE-2004-0333?
CVE-2004-0333 affects WinZip versions 6.2 to 8.1 SR-1 and UUDeview versions 0.5.18 and 0.5.19.
What type of attack does CVE-2004-0333 facilitate?
CVE-2004-0333 allows remote attackers to execute arbitrary code by exploiting a buffer overflow through specially crafted MIME archives.
Is there a patch available for CVE-2004-0333?
Yes, patches or updated versions that resolve CVE-2004-0333 are available from the software providers.