CVE-2004-1004: High severity Midnight commander Midnight commander vulnerability
Published Jan 22, 2005
·Updated
Multiple format string vulnerabilities in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to have an unknown impact.
Affected Software
47 affected components
Midnight commander Midnight commander=4.5.48
Midnight commander Midnight commander=4.5.40
Midnight commander Midnight commander=4.5.43
Midnight commander Midnight commander=4.5.50
Midnight commander Midnight commander=4.5.49
Midnight commander Midnight commander=4.5.52
Midnight commander Midnight commander=4.5.42
Midnight commander Midnight commander=4.5.45
Midnight commander Midnight commander=4.5.55
Midnight commander Midnight commander=4.5.44
Midnight commander Midnight commander=4.5.41
Midnight commander Midnight commander=4.5.46
Midnight commander Midnight commander=4.5.47
Midnight commander Midnight commander=4.5.51
Midnight commander Midnight commander=4.5.54
Midnight commander Midnight commander=4.6
redhat Enterprise Linux=2.1
SUSE SuSE Linux=9.2
Debian Debian Linux=3.0
SUSE SuSE Linux=9.0
redhat Linux Advanced Workstation=2.1
Debian Debian Linux=3.0
SUSE SuSE Linux=8.2
Debian Debian Linux=3.0
Debian Debian Linux=3.0
redhat Enterprise Linux=2.1
Turbolinux Turbolinux Server=7.0
SUSE SuSE Linux=9.0
Debian Debian Linux=3.0
SUSE SuSE Linux=8.0
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Turbolinux Turbolinux Workstation=7.0
Debian Debian Linux=3.0
redhat Linux Advanced Workstation=2.1
SUSE SuSE Linux=8.0
SUSE SuSE Linux=9.1
Turbolinux Turbolinux Workstation=8.0
Debian Debian Linux=3.0
redhat Enterprise Linux=2.1
Debian Debian Linux=3.0
redhat Enterprise Linux=2.1
Turbolinux Turbolinux Server=8.0
Gentoo Linux
Debian Debian Linux=3.0
Debian Debian Linux=3.0
SUSE SuSE Linux=8.1
Remediation
Patch Available
Patch Available
Event History
Jan 22, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1004?
CVE-2004-1004 is classified with an unknown impact, but it poses multiple format string vulnerabilities.
2
How do I fix CVE-2004-1004?
To fix CVE-2004-1004, upgrade Midnight Commander to version 4.6 or later.
3
Which versions of Midnight Commander are affected by CVE-2004-1004?
CVE-2004-1004 affects Midnight Commander versions 4.5.48 and earlier.
4
Can CVE-2004-1004 be exploited remotely?
Yes, CVE-2004-1004 allows remote attackers to exploit the vulnerabilities.
5
What kind of vulnerabilities are associated with CVE-2004-1004?
CVE-2004-1004 involves multiple format string vulnerabilities that can lead to undefined behavior.