CVE-2004-0409: Buffer Overflow
Published Apr 17, 2004
·Updated
Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to execute arbitrary code.
Affected Software
30 affected componentsFixes available
debian/xchat
2.8.8-17
Xchat xchat=1.8.0
Xchat xchat=1.8.1
Xchat xchat=1.8.2
Xchat xchat=1.8.3
Xchat xchat=1.8.4
Xchat xchat=1.8.5
Xchat xchat=1.8.6
Xchat xchat=1.8.7
Xchat xchat=1.8.8
Xchat xchat=1.8.9
Xchat xchat=1.9.0
Xchat xchat=1.9.1
Xchat xchat=1.9.2
Xchat xchat=1.9.3
Xchat xchat=1.9.4
Xchat xchat=1.9.5
Xchat xchat=1.9.6
Xchat xchat=1.9.7
Xchat xchat=1.9.8
Xchat xchat=1.9.9
Xchat xchat=2.0.0
Xchat xchat=2.0.1
Xchat xchat=2.0.2
Xchat xchat=2.0.3
Xchat xchat=2.0.4
Xchat xchat=2.0.5
Xchat xchat=2.0.6
Xchat xchat=2.0.7
Xchat xchat=2.0.8
Remediation
Patch Available
Patch Available
Event History
Apr 17, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0409?
CVE-2004-0409 is rated as a high-severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2004-0409?
To mitigate CVE-2004-0409, update XChat to version 2.8.8-17 or later.
3
What software versions are affected by CVE-2004-0409?
CVE-2004-0409 affects XChat versions 1.8.0 through 2.0.8 with Socks-5 proxy enabled.
4
Can CVE-2004-0409 be exploited remotely?
Yes, CVE-2004-0409 can be exploited remotely if the vulnerable version of XChat is exposed.
5
What type of vulnerability is CVE-2004-0409?
CVE-2004-0409 is a stack-based buffer overflow vulnerability.