CVE-2004-0560

NameCVE-2004-0560
DescriptionInteger overflow in gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted content of a certain size that triggers the overflow.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-638-1
NVD severityhigh

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
gopher (PTS)buster, stretch3.0.16fixed
bullseye, sid3.0.17.3fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
gophersourcewoody3.0.3woody2DSA-638-1
gophersource(unstable)3.0.6

Notes

removed, deprecated in favor of pygopherd

Search for package or bug name: Reporting problems