CVE-2004-0604

giFT-FastTrack <= 0.8.6 - Denial of Service via Empty Search Query

Title source: llm
STIX 2.1

Description

The HTTP client and server in giFT-FastTrack 0.8.6 and earlier allows remote attackers to cause a denial of service (crash), possibly via an empty search query, which triggers a NULL dereference.

References (6)

Core 6
Core References
Vendor Advisory vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200406-19.xml
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/10604
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/11941/
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/16508
Various Sources x_refsource_confirm
http://gift-fasttrack.berlios.de/

Scores

EPSS 0.0127
EPSS Percentile 79.8%

Details

Status published
Products (8)
gentoo/linux 1.4
gift-fasttrack/gift-fasttrack 0.8.0
gift-fasttrack/gift-fasttrack 0.8.1
gift-fasttrack/gift-fasttrack 0.8.2
gift-fasttrack/gift-fasttrack 0.8.3
gift-fasttrack/gift-fasttrack 0.8.4
gift-fasttrack/gift-fasttrack 0.8.5
gift-fasttrack/gift-fasttrack 0.8.6
Published Dec 06, 2004
Tracked Since Feb 18, 2026