Back

CVE-2004-0980

Format string vulnerability in ez-ipupdate.c for ez-ipupdate 3.0.10 through 3.0.11b8, when running in daemon mode with certain service types in use, allows remote servers to execute arbitrary code.

Published: Feb 9, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (15)

Vendor Product Version
angus_mackay ez-ipupdate 3.0.11b5
angus_mackay ez-ipupdate 3.0.11b8
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
debian debian_linux 3.0
gentoo linux *

GitHub Security Advisory GHSA-g38j-89cg-fgfg

Format string vulnerability in ez-ipupdate.c for ez-ipupdate 3.0.10 through 3.0.11b8, when...

Risk Scores

CVSS Score 10.0 / 10
EPSS Score 3.82%

Top 11% most likely to be exploited

Threat Score 41.1 / 100

Data Sources

NVD EPSS GitHub