Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-0804

Опубликовано: 06 фев. 2012
Источник: redhat
CVSS2: 5.1
EPSS Низкий

Описание

Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4cvsNot affected
Red Hat Enterprise Linux 5cvsFixedRHSA-2012:032121.02.2012
Red Hat Enterprise Linux 6cvsFixedRHSA-2012:032121.02.2012

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=784141cvs: client proxy_connect heap-based buffer overflow

EPSS

Процентиль: 85%
0.02507
Низкий

5.1 Medium

CVSS2

Связанные уязвимости

ubuntu
около 13 лет назад

Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.

nvd
около 13 лет назад

Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.

debian
около 13 лет назад

Heap-based buffer overflow in the proxy_connect function in src/client ...

github
около 3 лет назад

Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.

oracle-oval
больше 13 лет назад

ELSA-2012-0321: cvs security update (MODERATE)

EPSS

Процентиль: 85%
0.02507
Низкий

5.1 Medium

CVSS2