← All CVEs

CVE-2004-0946

high · 10

rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stack-based buffer overflow and allows remote attackers to execute arbitrary code via a crafted NFS request.

10
CVSS
11.3%
EPSS (exploit prob.)
96th
EPSS percentile
2005-01-10
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
nfsnfs-utils1.0
nfsnfs-utils1.0.1
nfsnfs-utils1.0.2
nfsnfs-utils1.0.3
nfsnfs-utils1.0.4
nfsnfs-utils1.0.6
redhatenterprise_linux3.0
redhatenterprise_linux3.0
redhatenterprise_linux3.0
redhatenterprise_linux_desktop3.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-0946