Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-0396
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0396

Description:
Heap-based buffer overflow in CVS 1.11.x up to 1.11.15, and 1.12.x up to 1.12.7, when using the pserver mechanism allows remote attackers to execute arbitrary code via Entry lines.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/16193

SUSE
  http://lists.grok.org.uk/pipermail/full-disclosure/2004-May/021742.html

SLACKWARE
  http://www.slackware.com/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.395865

SAID
  Secunia Advisory: SA11674
  Secunia Advisory: SA11651
  Secunia Advisory: SA11652
  Secunia Advisory: SA11641
  Secunia Advisory: SA11647

REDHAT
  http://www.redhat.com/support/errata/RHSA-2004-190.html

OVAL
  http://oval.mitre.org/oval/definitions/data/oval970.html

OSVDB
  6305

OPENBSD
  http://marc.theaimsgroup.com/?l=openbsd-security-announce&m=108508894405639&w=2

NETBSD

MISC
  http://security.e-matters.de/advisories/072004.html

MANDRAKE
  http://www.mandrakesoft.com/security/advisories?name=MDKSA-2004:048

GENTOO
  http://security.gentoo.org/glsa/glsa-200405-12.xml

FULLDISC
  http://archives.neohapsis.com/archives/fulldisclosure/2004-05/0980.html

FREEBSD

FEDORA
  http://marc.theaimsgroup.com/?l=bugtraq&m=108636445031613&w=2

DEBIAN
  http://www.debian.org/security/2004/dsa-505

CIAC
  http://www.ciac.org/ciac/bulletins/o-147.shtml

CERT-VN
  192038

CERT
  http://www.us-cert.gov/cas/techalerts/TA04-147A.html

BUGTRAQ
  http://marc.theaimsgroup.com/?l=bugtraq&m=108500040719512&w=2
  http://marc.theaimsgroup.com/?l=bugtraq&m=108498454829020&w=2
  http://cert.uni-stuttgart.de/archive/bugtraq/2004/05/msg00219.html

BID
  10384


Return to the previous page.