Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2000-0504Project X11r6 vulnerability

5 documents4 sources
Severity
5.0MEDIUMNVD
EPSS
2.3%
top 15.14%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedJun 19
Latest updateApr 30

Description

libICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the SKIP_STRING macro.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

NVDxfree86_project/x11r65 versions+4
NVDgnome/gdm1.0, 1.1+1
NVDopen_group/x6 versions+5

Patches

🔴Vulnerability Details

2
GHSA
GHSA-p8mh-8cvx-pv92: libICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the SKIP_STRING ma2022-04-30
CVEList
CVE-2000-0504: libICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the SKIP_STRING ma2001-05-07

💥Exploits & PoCs

2
Exploit-DB
VMware - COM API ActiveX Remote Buffer Overflow (PoC)2008-09-01
Exploit-DB
Gnome 1.0/1.1 / Group X 11.0 / XFree86 X11R6 3.3.x/4.0 - Denial of Service2000-06-19
CVE-2000-0504 — Xfree86 Project X11r6 vulnerability | cvebase