First published: Thu Mar 25 2004(Updated: )
Double free vulnerability in dtlogin in CDE on Solaris, HP-UX, and other operating systems allows remote attackers to execute arbitrary code via a crafted XDMCP packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Deepin Desktop Environment | =1.0.1 | |
Deepin Desktop Environment | =1.2 | |
xi graphics dextop | =2.1 | |
Deepin Desktop Environment | =2.0 | |
xi graphics dextop | =3.0 | |
Deepin Desktop Environment | =2.1.20 | |
Deepin Desktop Environment | =1.0.2 | |
Deepin Desktop Environment | =2.1 | |
Deepin Desktop Environment | =1.1 | |
IBM AIX | =5.2 | |
IBM AIX | =4.3.3 | |
IBM AIX | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2004-0368 is considered high due to the potential for remote code execution.
To fix CVE-2004-0368, upgrade to the latest version of the Common Desktop Environment or apply the relevant security patches.
CVE-2004-0368 affects systems running the Common Desktop Environment and certain versions of IBM AIX operating systems.
CVE-2004-0368 can be exploited by an attacker sending a crafted XDMCP packet to execute arbitrary code.
While CVE-2004-0368 is an older vulnerability, it remains relevant for systems still using affected software versions.