CVE-2004-0368: Buffer Overflow
Published Mar 25, 2004
·Updated
Double free vulnerability in dtlogin in CDE on Solaris, HP-UX, and other operating systems allows remote attackers to execute arbitrary code via a crafted XDMCP packet.
Affected Software
12 affected components
Open Group Cde Common Desktop Environment=1.0.1
Open Group Cde Common Desktop Environment=1.2
Xi Graphics Dextop=2.1
Open Group Cde Common Desktop Environment=2.0
Xi Graphics Dextop=3.0
Open Group Cde Common Desktop Environment=2.1.20
Open Group Cde Common Desktop Environment=1.0.2
Open Group Cde Common Desktop Environment=2.1
Open Group Cde Common Desktop Environment=1.1
IBM AIX=5.2
IBM AIX=4.3.3
IBM AIX=5.1
Event History
Mar 25, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0368?
The severity of CVE-2004-0368 is considered high due to the potential for remote code execution.
2
How do I fix CVE-2004-0368?
To fix CVE-2004-0368, upgrade to the latest version of the Common Desktop Environment or apply the relevant security patches.
3
Which systems are affected by CVE-2004-0368?
CVE-2004-0368 affects systems running the Common Desktop Environment and certain versions of IBM AIX operating systems.
4
What kind of attack can exploit CVE-2004-0368?
CVE-2004-0368 can be exploited by an attacker sending a crafted XDMCP packet to execute arbitrary code.
5
Is CVE-2004-0368 still relevant today?
While CVE-2004-0368 is an older vulnerability, it remains relevant for systems still using affected software versions.