The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2004-04-16T04:00:00
Updated: 2024-08-08T00:10:03.820Z
Reserved: 2004-02-25T00:00:00
Link: CVE-2004-0180
Vulnrichment
No data.
NVD
Status : Modified
Published: 2004-06-01T04:00:00.000
Modified: 2024-11-20T23:47:56.730
Link: CVE-2004-0180
Redhat