CVE-2004-0560

NameCVE-2004-0560
DescriptionInteger overflow in gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted content of a certain size that triggers the overflow.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SuSE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-638-1
NVD severityhigh (attack range: remote)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
gopher (PTS)wheezy, jessie3.0.13fixed
buster, sid, stretch3.0.16fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
gophersource(unstable)3.0.6high
gophersourcewoody3.0.3woody2highDSA-638-1

Notes

removed, deprecated in favor of pygopherd

Search for package or bug name: Reporting problems