VYPR
Unrated severityNVD Advisory· Published Mar 3, 2004· Updated Apr 16, 2026

CVE-2004-0084

CVE-2004-0084

Description

Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a different vulnerability than CVE-2004-0083 and CVE-2004-0106.

Affected products

9
  • Xorg/X11r67 versions
    cpe:2.3:a:xfree86_project:x11r6:4.1.0:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:xfree86_project:x11r6:4.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:xfree86_project:x11r6:4.1.11:*:*:*:*:*:*:*
    • cpe:2.3:a:xfree86_project:x11r6:4.1.12:*:*:*:*:*:*:*
    • cpe:2.3:a:xfree86_project:x11r6:4.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:xfree86_project:x11r6:4.2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:xfree86_project:x11r6:4.2.1:*:errata:*:*:*:*:*
    • cpe:2.3:a:xfree86_project:x11r6:4.3.0:*:*:*:*:*:*:*
  • OpenBSD/OpenBSD2 versions
    cpe:2.3:o:openbsd:openbsd:3.3:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:openbsd:openbsd:3.3:*:*:*:*:*:*:*
    • cpe:2.3:o:openbsd:openbsd:3.4:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

18

News mentions

0

No linked articles in our index yet.