CVE-2005-0079
published 2005-05-02CVE-2005-0079: Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session.
PriorityP47medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.38%
31.1th percentile
Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xtrlock | < xtrlock 2.0-9 (bookworm) | xtrlock 2.0-9 (bookworm) |
| xtrlock | xtrlock | — | — |
| xtrlock | xtrlock | >= 0 < 2.0-9 | 2.0-9 |
| xtrlock | xtrlock | >= 0 < 2.0-9 | 2.0-9 |
| xtrlock | xtrlock | >= 0 < 2.0-9 | 2.0-9 |
| xtrlock | xtrlock | >= 0 < 2.0-9 | 2.0-9 |
CVSS provenance
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv4.6MEDIUM
vendor_redhat5.0MEDIUM
vendor_debian4.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-672r-q8mg-g4w9: Buffer overflow in xtrlock 2
ghsa_unreviewed·2022-05-01
CVE-2005-0079 [MEDIUM] GHSA-672r-q8mg-g4w9: Buffer overflow in xtrlock 2
Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session.
OSV
CVE-2005-0079: Buffer overflow in xtrlock 2
osv·2005-05-02·CVSS 4.6
CVE-2005-0079 [MEDIUM] CVE-2005-0079: Buffer overflow in xtrlock 2
Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session.
Debian
CVE-2005-0079: xtrlock - Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (...
vendor_debian·2005·CVSS 4.6
CVE-2005-0079 [MEDIUM] CVE-2005-0079: xtrlock - Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (...
Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session.
Scope: local
bookworm: resolved (fixed in 2.0-9)
bullseye: resolved (fixed in 2.0-9)
forky: resolved (fixed in 2.0-9)
sid: resolved (fixed in 2.0-9)
trixie: resolved (fixed in 2.0-9)
Red Hat
CVE-2005-1730: Multiple vulnerabilities in the OpenSSL ASN
vendor_redhat·CVSS 5.0
CVE-2005-1730 [MEDIUM] CVE-2005-1730: Multiple vulnerabilities in the OpenSSL ASN
Multiple vulnerabilities in the OpenSSL ASN.1 parser, as used in Novell iManager 2.0.2, allows remote attackers to cause a denial of service (NULL pointer dereference) via crafted packets, as demonstrated by "OpenSSL ASN.1 brute forcer." NOTE: this issue might overlap CVE-2004-0079, CVE-2004-0081, or CVE-2004-0112.
Statement: Based on our research we believe that the "OpenSSL ASN.1 brute forcer." is actually exploiting flaws CVE-2003-0543, CVE-2003-0544, CVE-2003-0545. Those issues are all addressed in Red Hat Enterprise Linux and therefore CVE-2005-1730 is a duplicate assignment.
No detection rules found.
No public exploits indexed.
http://secunia.com/advisories/13938http://www.debian.org/security/2005/dsa-649http://www.securityfocus.com/bid/12316https://exchange.xforce.ibmcloud.com/vulnerabilities/18991http://secunia.com/advisories/13938http://www.debian.org/security/2005/dsa-649http://www.securityfocus.com/bid/12316https://exchange.xforce.ibmcloud.com/vulnerabilities/18991
2005-05-02
Published