CVE-2004-0494: High severity Avaya Cvlan vulnerability
Published Aug 5, 2004
·Updated
Multiple extfs backend scripts for GNOME virtual file system (VFS) before 1.0.1 may allow remote attackers to perform certain unauthorized actions via a gnome-vfs URI.
Affected Software
13 affected components
Avaya Cvlan
redhat Enterprise Linux=2.1
redhat Enterprise Linux Desktop=3.0
redhat Linux Advanced Workstation=2.1
redhat Enterprise Linux=3.0
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Linux Advanced Workstation=2.1
redhat Enterprise Linux=3.0
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Enterprise Linux=2.1
redhat Enterprise Linux=3.0
Remediation
Patch Available
Event History
Aug 5, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0494?
CVE-2004-0494 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2004-0494?
To fix CVE-2004-0494, update the GNOME Virtual File System to version 1.0.1 or later.
3
What affects CVE-2004-0494?
CVE-2004-0494 affects multiple extfs backend scripts for GNOME VFS before version 1.0.1.
4
Can CVE-2004-0494 be exploited remotely?
Yes, CVE-2004-0494 can be exploited by remote attackers through a specially crafted gnome-vfs URI.
5
What systems are vulnerable to CVE-2004-0494?
Red Hat Enterprise Linux 2.1 and 3.0, along with certain versions of Avaya CVLAN and Red Hat Linux Advanced Workstation are vulnerable to CVE-2004-0494.