PT-2005-1137 · Debian · Debian

Alberto Garcia

+1

·

Published

2005-04-27

·

Updated

2008-09-05

·

CVE-2004-1342

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions CVS versions 1.12 and earlier
Description The issue allows remote attackers to bypass authentication via the pserver access method when using the repouid patch on Debian GNU/Linux.
Recommendations For CVS versions 1.12 and earlier, consider disabling the pserver access method until a patch is available. Restrict access to the repouid patch to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1342
DSA-715-1

Affected Products

Debian