Back

CVE-2004-0834

Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute arbitrary code via (1) modem_run, (2) pppoa2, or (3) pppoa3.

Published: Dec 23, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (22)

Vendor Product Version
mandrakesoft mandrake_multi_network_firewall 8.2
speedtouch speedtouch_usb_driver 1.0
speedtouch speedtouch_usb_driver 1.1
speedtouch speedtouch_usb_driver 1.2
speedtouch speedtouch_usb_driver 1.2_beta1
speedtouch speedtouch_usb_driver 1.2_beta2
speedtouch speedtouch_usb_driver 1.2_beta3
speedtouch speedtouch_usb_driver 1.3
gentoo linux 1.4
mandrakesoft mandrake_linux 8.2
mandrakesoft mandrake_linux 8.2
mandrakesoft mandrake_linux 9.0
mandrakesoft mandrake_linux 9.1
mandrakesoft mandrake_linux 9.1
mandrakesoft mandrake_linux 9.2
mandrakesoft mandrake_linux 9.2
mandrakesoft mandrake_linux 10.0
mandrakesoft mandrake_linux 10.0
mandrakesoft mandrake_linux 10.1
mandrakesoft mandrake_linux 10.1

…and 2 more

GitHub Security Advisory GHSA-g57m-3v3c-69r7

Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute...

Risk Scores

CVSS Score 7.2 / 10
EPSS Score 0.43%

Top 64% most likely to be exploited

Threat Score 28.9 / 100

Data Sources

NVD EPSS GitHub