CVE-2004-0987: Buffer Overflow
Published Dec 5, 2004
·Updated
Buffer overflow in the processmenu function in yardradius 1.0.20 allows remote attackers to execute arbitrary code.
Affected Software
8 affected components
Yard Radius Yard Radius=1.0.17
Yard Radius Yard Radius=1.0.18
Yard Radius Yard Radius=1.0.19
Yard Radius Yard Radius=1.0.20
Yard Radius Yard Radius=1.0_pre13
Yard Radius Yard Radius=1.0_pre14
Yard Radius Yard Radius=1.0_pre15
Yard Radius Project Yard Radius=1.0.16
Remediation
Patch Available
Patch Available
Event History
Dec 5, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0987?
CVE-2004-0987 is classified as a high severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2004-0987?
To fix CVE-2004-0987, update to a patched version of yardradius that is not affected by the buffer overflow.
3
What software versions are affected by CVE-2004-0987?
CVE-2004-0987 affects yardradius versions 1.0.16 through 1.0.20 and certain pre-release versions.
4
Who can exploit CVE-2004-0987?
CVE-2004-0987 can be exploited by remote attackers who can send specially crafted input to the vulnerable yardradius software.
5
What is the impact of CVE-2004-0987?
The impact of CVE-2004-0987 includes the possibility of an attacker executing arbitrary code on the affected system.