CVE-2004-1772: Buffer Overflow
Published Dec 31, 2004
·Updated
Stack-based buffer overflow in shar in GNU sharutils 4.2.1 allows local users to execute arbitrary code via a long -o command line argument.
Affected Software
2 affected components
GNU sharutils=4.2
GNU sharutils=4.2.1
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Mar 28, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1772?
CVE-2004-1772 is classified as a high severity vulnerability due to its potential to allow local users to execute arbitrary code.
2
How do I fix CVE-2004-1772?
To fix CVE-2004-1772, you should update GNU sharutils to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2004-1772?
CVE-2004-1772 affects local users of GNU sharutils version 4.2 and 4.2.1.
4
What is the exploit vector for CVE-2004-1772?
The exploit vector for CVE-2004-1772 is a stack-based buffer overflow triggered by a long -o command line argument.
5
Can CVE-2004-1772 be exploited remotely?
CVE-2004-1772 cannot be exploited remotely as it requires local user access to execute the vulnerable command.