CVE-2004-1034
EPSS 5.7%
描述
Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long Content-Type header for a Real Audio Media (.ram) playlist file.
如何修補 CVE-2004-1034
要修補 CVE-2004-1034,請將受影響套件升級到下列已修補版本。
- Debian/kaffeine—升級至 0.4.3.1-3 或更新版本
CVE-2004-1034 正在被利用嗎?
中等 — EPSS 為 5.7%,可持續追蹤但非最高優先。
受影響套件(1)
- from 0, < 0.4.3.1-3