Unrated severityNVD Advisory· Published Oct 20, 2004· Updated Apr 16, 2026
CVE-2004-0783
CVE-2004-0783
Description
Stack-based buffer overflow in xpm_extract_color (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, may allow remote attackers to execute arbitrary code via a certain color string. NOTE: this identifier is ONLY for gtk+. It was incorrectly referenced in an advisory for a different issue (CVE-2004-0688).
Affected products
9cpe:2.3:a:gnome:gdkpixbuf:0.17:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:gnome:gdkpixbuf:0.17:*:*:*:*:*:*:*
- cpe:2.3:a:gnome:gdkpixbuf:0.18:*:*:*:*:*:*:*
- cpe:2.3:a:gnome:gdkpixbuf:0.20:*:*:*:*:*:*:*
- cpe:2.3:a:gnome:gdkpixbuf:0.22:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gtk:2.0.2:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:gnome:gtk:2.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:gnome:gtk:2.0.6:*:*:*:*:*:*:*
- cpe:2.3:a:gnome:gtk:2.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:gnome:gtk:2.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:gnome:gtk:2.2.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
17- www.redhat.com/support/errata/RHSA-2004-447.htmlnvdPatchVendor Advisory
- www.redhat.com/support/errata/RHSA-2004-466.htmlnvdPatchVendor Advisory
- distro.conectiva.com.br/atualizacoes/nvdThird Party Advisory
- marc.infonvdThird Party Advisory
- scary.beasts.org/security/CESA-2004-005.txtnvdThird Party Advisory
- sunsolve.sun.com/search/document.donvdThird Party Advisory
- www.kb.cert.org/vuls/id/369358nvdThird Party AdvisoryUS Government Resource
- www.mandrakesecure.net/en/advisories/advisory.phpnvdThird Party Advisory
- www.mandrakesecure.net/en/advisories/advisory.phpnvdThird Party Advisory
- www.securityfocus.com/archive/1/419771/100/0/threadednvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/11195nvdThird Party AdvisoryVDB Entry
- exchange.xforce.ibmcloud.com/vulnerabilities/17385nvdThird Party AdvisoryVDB Entry
- secunia.com/advisories/17657nvdBroken Link
- www.mandriva.com/security/advisoriesnvdBroken Link
- bugzilla.fedora.us/show_bug.cginvdIssue Tracking
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1786nvdBroken Link
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9348nvdBroken Link
News mentions
0No linked articles in our index yet.