CVE-2003-0165

Eye Of Gnome - Remote Code Execution via Format String Specifiers in Command Line Argument

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2003-0165. PoCs published by Core Security.

AI-analyzed exploit summary The exploit demonstrates a format string vulnerability in GNOME Eye of Gnome (EOG) image viewer. By passing malicious format specifiers via the command line, an attacker can potentially execute arbitrary code. This could lead to local privilege escalation or remote exploitation if EOG is configured as a handler for images.

Description

Format string vulnerability in Eye Of Gnome (EOG) allows attackers to execute arbitrary code via format string specifiers in a command line argument for the file to display.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Core Security · textlocallinux
https://www.exploit-db.com/exploits/22376

The exploit demonstrates a format string vulnerability in GNOME Eye of Gnome (EOG) image viewer. By passing malicious format specifiers via the command line, an attacker can potentially execute arbitrary code. This could lead to local privilege escalation or remote exploitation if EOG is configured as a handler for images.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: GNOME Eye of Gnome (EOG) image viewer
No auth needed
Prerequisites: Access to command line where EOG is installed · EOG configured as a handler for images
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A52
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/7121
Vendor Advisory vendor-advisory x_refsource_mandrake
http://www.mandriva.com/security/advisories?name=MDKSA-2003:048
Third Party Advisory mailing-list x_refsource_vulnwatch
http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0157.html
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/363001
Patch, Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2003-128.html
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=104887189724146&w=2

Scores

EPSS 0.0168
EPSS Percentile 74.0%

Details

Status published
Products (10)
gnome/eog 1.0.0
gnome/eog 1.0.1
gnome/eog 1.0.2
gnome/eog 1.0.3
gnome/eog 1.0.4
gnome/eog 1.1.1
gnome/eog 1.1.2
gnome/eog 1.1.3
gnome/eog 1.1.4
gnome/eog 2.2.0
Published Apr 02, 2003
Tracked Since Feb 18, 2026