CVE Vulnerabilities

CVE-2004-1343

Published: Dec 31, 2004 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

CVS 1.12 and earlier on Debian GNU/Linux does not properly handle when a mapping for the current repository does not exist in the cvs-repouids file, which allows remote attackers to cause a denial of service (server crash).

Affected Software

Name Vendor Start Version End Version
Cvs Cvs 1.10 (including) 1.10 (including)
Cvs Cvs 1.10.6 (including) 1.10.6 (including)
Cvs Cvs 1.10.7 (including) 1.10.7 (including)
Cvs Cvs 1.10.8 (including) 1.10.8 (including)
Cvs Cvs 1.11 (including) 1.11 (including)
Cvs Cvs 1.11.1 (including) 1.11.1 (including)
Cvs Cvs 1.11.1_p1 (including) 1.11.1_p1 (including)
Cvs Cvs 1.11.2 (including) 1.11.2 (including)
Cvs Cvs 1.11.3 (including) 1.11.3 (including)
Cvs Cvs 1.11.4 (including) 1.11.4 (including)
Cvs Cvs 1.11.5 (including) 1.11.5 (including)
Cvs Cvs 1.11.6 (including) 1.11.6 (including)
Cvs Cvs 1.11.10 (including) 1.11.10 (including)
Cvs Cvs 1.11.11 (including) 1.11.11 (including)
Cvs Cvs 1.11.14 (including) 1.11.14 (including)
Cvs Cvs 1.11.15 (including) 1.11.15 (including)
Cvs Cvs 1.11.16 (including) 1.11.16 (including)
Cvs Cvs 1.12 (including) 1.12 (including)
Cvs Ubuntu dapper *
Cvs Ubuntu devel *
Cvs Ubuntu edgy *
Cvs Ubuntu feisty *

References