Show plain JSON{"id": "CVE-2004-0805", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 7.5, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "LOW", "availabilityImpact": "PARTIAL", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 6.4, "baseSeverity": "HIGH", "obtainAllPrivilege": false, "exploitabilityScore": 10.0, "obtainUserPrivilege": true, "obtainOtherPrivilege": false, "userInteractionRequired": false}]}, "published": "2004-12-23T05:00:00.000", "references": [{"url": "http://lists.grok.org.uk/pipermail/full-disclosure/2004-September/026151.html", "source": "cve@mitre.org"}, {"url": "http://www.alighieri.org/advisories/advisory-mpg123.txt", "source": "cve@mitre.org"}, {"url": "http://www.debian.org/security/2004/dsa-564", "tags": ["Patch", "Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://www.gentoo.org/security/en/glsa/glsa-200409-20.xml", "source": "cve@mitre.org"}, {"url": "http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:100", "source": "cve@mitre.org"}, {"url": "http://www.securityfocus.com/archive/1/374433", "source": "cve@mitre.org"}, {"url": "http://www.securityfocus.com/bid/11121", "source": "cve@mitre.org"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/17287", "source": "cve@mitre.org"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-Other"}]}], "descriptions": [{"lang": "en", "value": "Buffer overflow in layer2.c in mpg123 0.59r and possibly mpg123 0.59s allows remote attackers to execute arbitrary code via a certain (1) mp3 or (2) mp2 file."}, {"lang": "es", "value": "Desbordamiento de b\u00fafer en layer2.c en mpg123 0.59r y posiblemente en mpg123 0.59s permite a atacantes remotos ejecutar c\u00f3digo arbitrario mediante ciertos ficheros mp3 o mp2."}], "lastModified": "2017-07-11T01:30:29.480", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:mpg123:mpg123:0.59r:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F8EEF7E-C6BB-4669-81D2-68AABF8A7686"}, {"criteria": "cpe:2.3:a:mpg123:mpg123:0.59s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1144518D-4069-4903-9B45-56C0E97BC992"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4177C378-7729-46AB-B49B-C6DAED3200E7"}, {"criteria": "cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:amd64:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2164D10D-D1A4-418A-A9C8-CA8FAB1E90A7"}, {"criteria": "cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A06E5CD0-8BEC-4F4C-9E11-1FEE0563946C"}, {"criteria": "cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:amd64:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3BDD466-84C9-4CFC-A3A8-7AC0F752FB53"}, {"criteria": "cpe:2.3:o:mandrakesoft:mandrake_linux_corporate_server:2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E0F0D201-B1DC-4024-AF77-A284673618F3"}, {"criteria": "cpe:2.3:o:mandrakesoft:mandrake_linux_corporate_server:2.1:*:x86_64:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "052E3862-BFB7-42E7-889D-8590AFA8EF37"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}