VYPR
Unrated severityNVD Advisory· Published Jan 10, 2005· Updated Apr 16, 2026

CVE-2004-0946

CVE-2004-0946

Description

rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stack-based buffer overflow and allows remote attackers to execute arbitrary code via a crafted NFS request.

Affected products

10
  • Nfs/Nfs Utils6 versions
    cpe:2.3:a:nfs:nfs-utils:1.0:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:nfs:nfs-utils:1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:nfs:nfs-utils:1.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:nfs:nfs-utils:1.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:nfs:nfs-utils:1.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:nfs:nfs-utils:1.0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:nfs:nfs-utils:1.0.6:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux:3.0:*:advanced_server:*:*:*:*:*+ 2 more
    • cpe:2.3:o:redhat:enterprise_linux:3.0:*:advanced_server:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:3.0:*:enterprise_server:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:3.0:*:workstation_server:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_desktop:3.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

11

News mentions

0

No linked articles in our index yet.