Vulnerability Name:

CVE-2004-0834 (CCN-17792)

Assigned:2004-09-30
Published:2004-09-30
Updated:2017-07-11
Summary:Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute arbitrary code via (1) modem_run, (2) pppoa2, or (3) pppoa3.
CVSS v3 Severity:9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
7.2 High (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Privileges
References:Source: MITRE
Type: CNA
CVE-2004-0834

Source: CCN
Type: SourceForge.net
Project: Speedtouch USB for *nix: File List

Source: CONFIRM
Type: UNKNOWN
http://sourceforge.net/project/showfiles.php?group_id=32758&package_id=28264&release_id=271734

Source: CCN
Type: Speedtouch USB driver Web page
Version 1.3.1 is out

Source: CONFIRM
Type: Vendor Advisory
http://speedtouch.sourceforge.net/index.php?/news.en.html

Source: CCN
Type: GLSA-200411-04
Speedtouch USB driver: Privilege escalation vulnerability

Source: CCN
Type: The MAIL ARCHIVE Web site
[speedtouch] Re: Problems after following Debian Sarge HOWTO

Source: MISC
Type: UNKNOWN
http://www.mail-archive.com/speedtouch@ml.free.fr/msg06688.html

Source: CCN
Type: OSVDB ID: 11004
Thomson SpeedTouch USB Driver Multiple Function Format String

Source: CCN
Type: BID-11496
Speedtouch USB Driver Local Format String Vulnerability

Source: CCN
Type: SpeedTouch USB ADSL Modem Web page
SpeedTouch USB ADSL Modem

Source: XF
Type: UNKNOWN
speedtouch-format-string(17792)

Source: XF
Type: UNKNOWN
speedtouch-format-string(17792)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:mandrakesoft:mandrake_multi_network_firewall:8.2:*:*:*:*:*:*:*
  • OR cpe:/a:speedtouch:speedtouch_usb_driver:1.0:*:*:*:*:*:*:*
  • OR cpe:/a:speedtouch:speedtouch_usb_driver:1.1:*:*:*:*:*:*:*
  • OR cpe:/a:speedtouch:speedtouch_usb_driver:1.2:*:*:*:*:*:*:*
  • OR cpe:/a:speedtouch:speedtouch_usb_driver:1.2_beta1:*:*:*:*:*:*:*
  • OR cpe:/a:speedtouch:speedtouch_usb_driver:1.2_beta2:*:*:*:*:*:*:*
  • OR cpe:/a:speedtouch:speedtouch_usb_driver:1.2_beta3:*:*:*:*:*:*:*
  • OR cpe:/a:speedtouch:speedtouch_usb_driver:1.3:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:gentoo:linux:1.4:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:8.2:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:8.2:*:ppc:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:9.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:9.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:9.1:*:ppc:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:9.2:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:9.2:*:amd64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:10.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:10.0:*:amd64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:10.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:10.1:*:x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:2.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:2.1:*:x86_64:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    mandrakesoft mandrake multi network firewall 8.2
    speedtouch speedtouch usb driver 1.0
    speedtouch speedtouch usb driver 1.1
    speedtouch speedtouch usb driver 1.2
    speedtouch speedtouch usb driver 1.2_beta1
    speedtouch speedtouch usb driver 1.2_beta2
    speedtouch speedtouch usb driver 1.2_beta3
    speedtouch speedtouch usb driver 1.3
    gentoo linux 1.4
    mandrakesoft mandrake linux 8.2
    mandrakesoft mandrake linux 8.2
    mandrakesoft mandrake linux 9.0
    mandrakesoft mandrake linux 9.1
    mandrakesoft mandrake linux 9.1
    mandrakesoft mandrake linux 9.2
    mandrakesoft mandrake linux 9.2
    mandrakesoft mandrake linux 10.0
    mandrakesoft mandrake linux 10.0
    mandrakesoft mandrake linux 10.1
    mandrakesoft mandrake linux 10.1
    mandrakesoft mandrake linux corporate server 2.1
    mandrakesoft mandrake linux corporate server 2.1