CVE-2004-1079: Buffer Overflow
Published Dec 1, 2004
·Updated
Buffer overflow in (1) ncplogin and (2) ncpmap in nwclient.c for ncpfs 2.2.4, and possibly other versions, may allow local users to gain privileges via a long -T option.
Affected Software
4 affected components
ncpfs ncpfs=2.2.2
ncpfs ncpfs=2.2.4
ncpfs ncpfs=2.2.1
ncpfs ncpfs=2.2.3
Remediation
Patch Available
Event History
Dec 1, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1079?
CVE-2004-1079 is considered a high severity vulnerability due to the potential for privilege escalation.
2
How do I fix CVE-2004-1079?
To fix CVE-2004-1079, you should upgrade to ncpfs version 2.2.4 or later, which contains the necessary security patches.
3
Which versions of ncpfs are affected by CVE-2004-1079?
Versions 2.2.1, 2.2.2, 2.2.3, and 2.2.4 of ncpfs are affected by CVE-2004-1079.
4
What type of vulnerability is CVE-2004-1079?
CVE-2004-1079 is a buffer overflow vulnerability that can be exploited by local users.
5
Can CVE-2004-1079 be exploited remotely?
CVE-2004-1079 cannot be exploited remotely as it requires local user access to trigger the buffer overflow.