Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2004-0631 | First vendor Publication | 2004-08-18 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 10 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Buffer overflow in the uudecoding feature for Adobe Acrobat Reader 5.0.5 and 5.0.6 for Unix and Linux, and possibly other versions including those before 5.0.9, allows remote attackers to execute arbitrary code via a long filename for the PDF file that is provided to the uudecode command. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0631 |
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 3 |
OpenVAS Exploits
Date | Description |
---|---|
2008-09-24 | Name : Gentoo Security Advisory GLSA 200408-14 (acroread) File : nvt/glsa_200408_14.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
8655 | Adobe Acrobat UUDecode File Name Overflow Adobe Acrobat Reader contains an input validation error within the "uudecoding" feature. The program fails to check the length of filenames before copying them into a fixed length buffer. This lack on input validation will allow a maliciously constructed file to trigger a buffer overflow allowing arbitrary code execution. |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2004-08-30 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-200408-14.nasl - Type : ACT_GATHER_INFO |
2004-08-26 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2004-432.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:22:58 |
|
2024-11-28 12:06:09 |
|
2021-05-04 12:02:22 |
|
2021-04-22 01:02:31 |
|
2020-05-23 00:15:50 |
|
2017-07-11 12:01:28 |
|
2014-02-17 10:27:46 |
|
2013-05-11 11:42:10 |
|