CVE-2004-1176: High severity midnight commander midnight commander vulnerability
Published Jan 22, 2005
·Updated
Buffer underflow in extfs.c in Midnight Commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.
Affected Software
47 affected components
Midnight commander Midnight commander=4.5.48
Midnight commander Midnight commander=4.5.40
Midnight commander Midnight commander=4.5.43
Midnight commander Midnight commander=4.5.50
Midnight commander Midnight commander=4.5.49
Midnight commander Midnight commander=4.5.52
Midnight commander Midnight commander=4.5.42
Midnight commander Midnight commander=4.5.45
Midnight commander Midnight commander=4.5.55
Midnight commander Midnight commander=4.5.44
Midnight commander Midnight commander=4.5.41
Midnight commander Midnight commander=4.5.46
Midnight commander Midnight commander=4.5.47
Midnight commander Midnight commander=4.5.51
Midnight commander Midnight commander=4.5.54
Midnight commander Midnight commander=4.6
redhat Enterprise Linux=2.1
SUSE SuSE Linux=9.2
Debian Debian Linux=3.0
SUSE SuSE Linux=9.0
redhat Linux Advanced Workstation=2.1
Debian Debian Linux=3.0
SUSE SuSE Linux=8.2
Debian Debian Linux=3.0
Debian Debian Linux=3.0
redhat Enterprise Linux=2.1
Turbolinux Turbolinux Server=7.0
SUSE SuSE Linux=9.0
Debian Debian Linux=3.0
SUSE SuSE Linux=8.0
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Turbolinux Turbolinux Workstation=7.0
Debian Debian Linux=3.0
redhat Linux Advanced Workstation=2.1
SUSE SuSE Linux=8.0
SUSE SuSE Linux=9.1
Turbolinux Turbolinux Workstation=8.0
Debian Debian Linux=3.0
redhat Enterprise Linux=2.1
Debian Debian Linux=3.0
redhat Enterprise Linux=2.1
Turbolinux Turbolinux Server=8.0
Gentoo Linux
Debian Debian Linux=3.0
Debian Debian Linux=3.0
SUSE SuSE Linux=8.1
Remediation
Patch Available
Patch Available
Event History
Jan 22, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1176?
CVE-2004-1176 has a high severity rating as it can allow remote attackers to perform denial of service and potentially execute arbitrary code.
2
How do I fix CVE-2004-1176?
To fix CVE-2004-1176, you should upgrade to Midnight Commander version 4.6 or later.
3
What software versions are affected by CVE-2004-1176?
CVE-2004-1176 affects Midnight Commander versions 4.5.55 and earlier.
4
Can CVE-2004-1176 lead to data loss?
Yes, due to the potential execution of arbitrary code, CVE-2004-1176 can lead to data loss.
5
How can I determine if my system is vulnerable to CVE-2004-1176?
You can determine if your system is vulnerable by checking the version of Midnight Commander installed and verifying if it is version 4.5.55 or earlier.