Lcdproc is a niche open-source LCD display control and management utility with a narrow product footprint, used primarily in embedded systems and specialized hardware monitoring contexts. The vendor's vulnerability profile reflects its focused scope and the input-handling demands of display-control interfaces. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Lcdproc over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2000-0295HIGH Buffer overflow in LCDproc allows remote attackers to gain root privileges via the screen_add command. | Apr 21, 2000 | 10.0 | 36 | NO | YES |
CVE-2004-1915HIGH Buffer overflow in the parse_all_client_messages function in LCDproc 0.4.x up to 0.4.4 allows remote attackers to execute arbitrary code via a large number of arguments. | Apr 8, 2004 | 7.5 | 32 | NO | YES |
CVE-2004-1916HIGH Multiple buffer overflows in LCDProc 0.4.1, and possibly other 0.4.x versions up to 0.4.4, allows remote attackers to execute arbitrary code via (1) a long invalid command to parse | Apr 8, 2004 | 7.5 | 25 | NO | NO |
CVE-2004-1917HIGH Format string vulnerability in test_func_func in LCDProc 0.4.1 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the str variable. | Apr 8, 2004 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Lcdproc.
Media articles that mention a CVE ID that affects a product developed by Lcdproc — matched by CVE ID, not by vendor name.