CVE-2004-0604: Medium severity giFT-FastTrack giFT-FastTrack vulnerability
Published Jun 30, 2004
·Updated
The HTTP client and server in giFT-FastTrack 0.8.6 and earlier allows remote attackers to cause a denial of service (crash), possibly via an empty search query, which triggers a NULL dereference.
Affected Software
8 affected components
giFT-FastTrack giFT-FastTrack=0.8.0
giFT-FastTrack giFT-FastTrack=0.8.1
giFT-FastTrack giFT-FastTrack=0.8.2
giFT-FastTrack giFT-FastTrack=0.8.3
giFT-FastTrack giFT-FastTrack=0.8.4
giFT-FastTrack giFT-FastTrack=0.8.5
giFT-FastTrack giFT-FastTrack=0.8.6
Gentoo Linux=1.4
Remediation
Patch Available
Event History
Jun 30, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0604?
CVE-2004-0604 is classified as a high severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2004-0604?
To mitigate CVE-2004-0604, upgrade giFT-FastTrack to version 0.8.7 or later.
3
What versions are affected by CVE-2004-0604?
CVE-2004-0604 affects giFT-FastTrack versions 0.8.1 to 0.8.6.
4
What type of vulnerability is CVE-2004-0604?
CVE-2004-0604 is a denial-of-service vulnerability that can crash the HTTP client and server.
5
Can CVE-2004-0604 be exploited remotely?
Yes, CVE-2004-0604 can be exploited remotely through an empty search query.