Vulnerabilities > CVE-2003-0165 - Unspecified vulnerability in Gnome EOG
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Format string vulnerability in Eye Of Gnome (EOG) allows attackers to execute arbitrary code via format string specifiers in a command line argument for the file to display.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 10 |
Exploit-Db
description | GNOME Eye Of Gnome 1.0.x/1.1.x/2.2 Format String Vulnerability. CVE-2003-0165. Local exploit for linux platform |
id | EDB-ID:22376 |
last seen | 2016-02-02 |
modified | 2003-03-28 |
published | 2003-03-28 |
reporter | Core Security |
source | https://www.exploit-db.com/download/22376/ |
title | GNOME Eye Of Gnome 1.0.x/1.1.x/2.2 Format String Vulnerability |
Nessus
NASL family | Mandriva Local Security Checks |
NASL id | MANDRAKE_MDKSA-2003-048.NASL |
description | A vulnerability was discovered in the Eye of GNOME (EOG) program, version 2.2.0 and earlier, that is used for displaying graphics. A carefully crafted filename passed to eog could lead to the execution of arbitrary code as the user executing eog. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 14032 |
published | 2004-07-31 |
reporter | This script is Copyright (C) 2004-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/14032 |
title | Mandrake Linux Security Advisory : eog (MDKSA-2003:048) |
code |
|
Oval
accepted | 2007-04-25T19:52:33.934-04:00 | ||||||||||||
class | vulnerability | ||||||||||||
contributors |
| ||||||||||||
description | Format string vulnerability in Eye Of Gnome (EOG) allows attackers to execute arbitrary code via format string specifiers in a command line argument for the file to display. | ||||||||||||
family | unix | ||||||||||||
id | oval:org.mitre.oval:def:52 | ||||||||||||
status | accepted | ||||||||||||
submitted | 2003-08-14T12:00:00.000-04:00 | ||||||||||||
title | Red Hat Eye of GNOME (EOG) Packages Fix Format String Vulnerability | ||||||||||||
version | 37 |
Packetstorm
data source | https://packetstormsecurity.com/files/download/30943/core.gnome.txt |
id | PACKETSTORM:30943 |
last seen | 2016-12-05 |
published | 2003-03-29 |
reporter | coresecurity.com |
source | https://packetstormsecurity.com/files/30943/core.gnome.txt.html |
title | core.gnome.txt |
Redhat
advisories |
|
References
- http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0157.html
- http://marc.info/?l=bugtraq&m=104887189724146&w=2
- http://www.coresecurity.com/common/showdoc.php?idx=312&idxseccion=10
- http://www.kb.cert.org/vuls/id/363001
- http://www.mandriva.com/security/advisories?name=MDKSA-2003:048
- http://www.redhat.com/support/errata/RHSA-2003-128.html
- http://www.securityfocus.com/bid/7121
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A52