CVE-2004-1342

5 documents5 sources
Severity
7.5HIGH
EPSS
0.3%
top 43.61%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 27
Latest updateApr 29

Description

CVS 1.12 and earlier on Debian GNU/Linux, when using the repouid patch, allows remote attackers to bypass authentication via the pserver access method.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

Debiancvs< 1:1.12.9-12+3
NVDcvs/cvs18 versions+17

Patches

🔴Vulnerability Details

3
GHSA
GHSA-j35r-wwj5-v97h: CVS 12022-04-29
CVEList
CVE-2004-1342: CVS 12005-04-27
OSV
CVE-2004-1342: CVS 12005-04-27

📋Vendor Advisories

1
Debian
CVE-2004-1342: cvs - CVS 1.12 and earlier on Debian GNU/Linux, when using the repouid patch, allows r...2004