CVE-2004-1053: Buffer Overflow
Published Nov 24, 2004
·Updated
Integer overflow in fetch on FreeBSD 4.1 through 5.3 allows remote malicious servers to execute arbitrary code via certain HTTP headers in an HTTP response, which lead to a buffer overflow.
Affected Software
1 affected component
FreeBSD fetch
Remediation
Patch Available
Event History
Nov 24, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1053?
CVE-2004-1053 has a high severity level due to the potential for remote code execution.
2
How do I fix CVE-2004-1053?
To fix CVE-2004-1053, upgrade FreeBSD to a version that includes the patch for this vulnerability.
3
What systems are affected by CVE-2004-1053?
CVE-2004-1053 affects FreeBSD versions 4.1 through 5.3 that utilize the fetch command.
4
What type of attack does CVE-2004-1053 exploit?
CVE-2004-1053 exploits an integer overflow vulnerability in the fetch command, leading to a buffer overflow.
5
What are the potential consequences of CVE-2004-1053 exploitation?
Exploitation of CVE-2004-1053 can allow attackers to execute arbitrary code on affected systems.