Vulnerabilities > CVE-2004-0561 - Denial-Of-Service vulnerability in University of Minnesota Gopherd 3.0.3

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
university-of-minnesota
nessus

Summary

Format string vulnerability in the log routine for gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code.

Vulnerable Configurations

Part Description Count
Application
University_Of_Minnesota
1

Nessus

  • NASL familyGain a shell remotely
    NASL idGOPHER_OVERFLOW.NASL
    descriptionThe remote host is running the UMN Gopher server. The remote version of the remote gopher server seems to be vulnerable to various issues including a buffer overflow and format string, which may be exploited by an attacker to execute arbitrary code on the remote host with the privileges of the gopher daemon.
    last seen2020-06-01
    modified2020-06-02
    plugin id16195
    published2005-01-18
    reporterThis script is Copyright (C) 2005-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/16195
    titleUMN Gopherd < 3.0.6 Multiple Remote Vulnerabilities
  • NASL familyDebian Local Security Checks
    NASL idDEBIAN_DSA-638.NASL
    description'jaguar
    last seen2020-06-01
    modified2020-06-02
    plugin id16156
    published2005-01-13
    reporterThis script is Copyright (C) 2005-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/16156
    titleDebian DSA-638-1 : gopher - several vulnerabilities