Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2004-08-05 21:00
Updated : 2018-05-02 18:29
NVD link : CVE-2004-0417
Mitre link : CVE-2004-0417
JSON object : View
CWE
Products Affected
sgi
- propack
openpkg
- openpkg
cvs
- cvs
gentoo
- linux
openbsd
- openbsd