VulnerabilityModified
CVE-2005-1099
Multiple buffer overflows in the HandleChild function in server.c in Greylisting daemon (GLD) 1.3 and 1.4, when GLD is listening on a network interface, allow remote attackers to execute arbitrary code.
HIGH 10.0EPSS 67.7%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 67.7%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Multiple buffer overflows in the HandleChild function in server.c in Greylisting daemon (GLD) 1.3 and 1.4, when GLD is listening on a network interface, allow remote attackers to execute arbitrary code.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 67.66% probability · 99th percentile
- CISA KEV
- Not listed
- Affected
- salim gasmi/gld
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=111339935903880&w=2
- http://marc.info/?l=bugtraq&m=111342432325670&w=2
- http://secunia.com/advisories/14941Patch, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200504-10.xmlPatch, Vendor Advisory
- http://securitytracker.com/alerts/2005/Apr/1013678.htmlVendor Advisory
- http://www.gasmi.net/down/gld-historyVendor Advisory
- http://www.osvdb.org/15492Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20066
- http://marc.info/?l=bugtraq&m=111339935903880&w=2
- http://marc.info/?l=bugtraq&m=111342432325670&w=2
- http://secunia.com/advisories/14941Patch, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200504-10.xmlPatch, Vendor Advisory
- http://securitytracker.com/alerts/2005/Apr/1013678.htmlVendor Advisory
- http://www.gasmi.net/down/gld-historyVendor Advisory
- http://www.osvdb.org/15492Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20066
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.