CVE-2004-0989
Last modified
CVE-2004-0989 is a vulnerability of currently unknown severity. Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code via (1) a long FTP URL that is not properly handled by the xmlNanoFTPScanURL function, (2) a long proxy URL containing FTP data that is not properly handled by the xmlNanoFTPScanProxy function, and other overflows related to manipulation of DNS length values, including (3) xmlNanoFTPConnect, (4) xmlNanoHTTPConnectHost, and (5) xmlNanoHTTPConnectHost.. EPSS estimates a 21.69% chance of exploitation in the next 30 days.
Description
Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code via (1) a long FTP URL that is not properly handled by the xmlNanoFTPScanURL function, (2) a long proxy URL containing FTP data that is not properly handled by the xmlNanoFTPScanProxy function, and other overflows related to manipulation of DNS length values, including (3) xmlNanoFTPConnect, (4) xmlNanoHTTPConnectHost, and (5) xmlNanoHTTPConnectHost.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Xmlsoft | Libxml | 1.8.17 |
| Xmlsoft | Libxml2 | 2.5.11 |
| Xmlsoft | Libxml2 | 2.6.6 |
| Xmlsoft | Libxml2 | 2.6.7 |
| Xmlsoft | Libxml2 | 2.6.8 |
| Xmlsoft | Libxml2 | 2.6.9 |
| Xmlsoft | Libxml2 | 2.6.11 |
| Xmlsoft | Libxml2 | 2.6.12 |
| Xmlsoft | Libxml2 | 2.6.13 |
| Xmlsoft | Libxml2 | 2.6.14 |
| Xmlstarlet | Command Line Xml Toolkit | 0.9.1 |
| Redhat | Fedora Core | core_2.0 |
| Trustix | Secure Linux | 2.0 |
| Trustix | Secure Linux | 2.1 |
| Ubuntu | Ubuntu Linux | 4.1 |
References
- http://www.securityfocus.com/bid/11526Exploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/11526Exploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-0989?
How severe is CVE-2004-0989?
How do I fix CVE-2004-0989?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2004
- CVE-2004-0983The CGI module in Ruby 1.6 before 1.6.8, and 1.8 before 1.8.…
- CVE-2004-0984Unknown vulnerability in the dotlock implementation in mailu…
- CVE-2004-0985Internet Explorer 6.x on Windows XP SP2 allows remote attack…
- CVE-2004-0986Iptables before 1.2.11, under certain conditions, does not p…
- CVE-2004-0987Buffer overflow in the process_menu function in yardradius 1…
- CVE-2004-0988Integer overflow on Apple QuickTime before 6.5.2, when runni…
- CVE-2004-0990Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2…
- CVE-2004-0991Buffer overflow in mpg123 before 0.59s-r9 allows remote atta…
- CVE-2004-0992Format string vulnerability in the -a option (daemon mode) i…
- CVE-2004-0993Buffer overflow in hpsockd before 0.6 allows remote attacker…
- CVE-2004-0994Multiple integer overflows in xzgv 0.8 and earlier allow rem…
- CVE-2004-0995Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
Are you affected by CVE-2004-0989?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
