CVE-2004-2714: Medium severity WindowMaker WindowMaker vulnerability
Published Dec 31, 2004
·Updated
Unspecified vulnerability in Window Maker 0.80.2 and earlier allows attackers to perform unknown actions via format string specifiers in a font specification in WMGLOBAL, probably a format string vulnerability.
Affected Software
16 affected components
WindowMaker WindowMaker=0.20.1.3
WindowMaker WindowMaker=0.52.2
WindowMaker WindowMaker=0.53
WindowMaker WindowMaker=0.60
WindowMaker WindowMaker=0.60.0
WindowMaker WindowMaker=0.61
WindowMaker WindowMaker=0.61.1
WindowMaker WindowMaker=0.62
WindowMaker WindowMaker=0.62.1
WindowMaker WindowMaker=0.63
WindowMaker WindowMaker=0.63.1
WindowMaker WindowMaker=0.64
WindowMaker WindowMaker=0.65
WindowMaker WindowMaker=0.65.1
WindowMaker WindowMaker=0.80
WindowMaker WindowMaker=0.80.2
Remediation
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Oct 7, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2714?
CVE-2004-2714 is classified as a format string vulnerability which can allow attackers to execute arbitrary actions.
2
How do I fix CVE-2004-2714?
Updating to a patched version of Window Maker that is newer than 0.80.2 is recommended to mitigate CVE-2004-2714.
3
What versions of Window Maker are affected by CVE-2004-2714?
CVE-2004-2714 affects Window Maker versions 0.80.2 and earlier.
4
What type of vulnerability is CVE-2004-2714?
CVE-2004-2714 is a format string vulnerability that can be exploited via crafted font specifications.
5
How can attackers exploit CVE-2004-2714?
Attackers can exploit CVE-2004-2714 by using format string specifiers in font specifications to perform unknown actions.