PT-2004-1555 · Cvs · Cvs

Sebastian Krahmer

+1

·

Published

2004-06-11

·

Updated

2018-05-03

·

CVE-2004-0416

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions CVS versions 1.11.x through 1.11.16 CVS versions 1.12.x through 1.12.8
Description A double free vulnerability for the error prog name string may allow remote attackers to execute arbitrary code.
Recommendations For CVS versions 1.11.x through 1.11.16, update to a version outside of this range to resolve the issue. For CVS versions 1.12.x through 1.12.8, update to a version outside of this range to resolve the issue.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2004-0416
DSA-519
RHSA-2004:233

Affected Products

Cvs