PoC Index

CVE-2004-0548

HIGH 7.2EPSS 0.9%

Multiple stack-based buffer overflows in the word-list-compress functionality in compress.c for Aspell allow local users to execute arbitrary code via a long entry in the wordlist that is not properly handled when using the (1) "c" compress option or (2) "d" decompress option.

CVSS v2.0
7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS
0.92% chance of exploitation in the next 30 days, 58th percentile
Published
2004-06-11
Updated
2024-08-08

ExploitDB entries (1)

References

Related