Back
CVE-2004-1917
Format string vulnerability in test_func_func in LCDProc 0.4.1 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the str variable.
Published: Apr 8, 2004
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (8)
| Vendor | Product | Version |
|---|---|---|
| lcdproc | lcdproc | 0.3 |
| lcdproc | lcdproc | 0.4 |
| lcdproc | lcdproc | 0.4.1_r1 |
| lcdproc | lcdproc | 4.0 |
| lcdproc | lcdproc | 4.1 |
| lcdproc | lcdproc | 4.2 |
| lcdproc | lcdproc | 4.3 |
| lcdproc | lcdproc | 4.4 |
GitHub Security Advisory GHSA-m634-63gw-qhv4
Format string vulnerability in test_func_func in LCDProc 0.4.1 and earlier allows remote...
References (12)
- http://lists.omnipotent.net/pipermail/lcdproc/2004-April/008884.html Exploit, Vendor Advisory
- http://marc.info/?l=bugtraq&m=108146376315229&w=2
- http://secunia.com/advisories/11333 Exploit, Patch, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200404-19.xml Patch, Vendor Advisory
- http://www.securityfocus.com/bid/10085 Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15817
- http://lists.omnipotent.net/pipermail/lcdproc/2004-April/008884.html Exploit, Vendor Advisory
- http://marc.info/?l=bugtraq&m=108146376315229&w=2
- http://secunia.com/advisories/11333 Exploit, Patch, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200404-19.xml Patch, Vendor Advisory
- http://www.securityfocus.com/bid/10085 Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15817
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
4.06%
Top 10% most likely to be exploited
Threat Score
31.2 / 100
Data Sources
NVD
EPSS
GitHub