CVE-2004-1343

5 documents5 sources
Severity
5.0MEDIUM
EPSS
0.7%
top 29.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateApr 29

Description

CVS 1.12 and earlier on Debian GNU/Linux does not properly handle when a mapping for the current repository does not exist in the cvs-repouids file, which allows remote attackers to cause a denial of service (server crash).

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

Debiancvs< 1:1.12.9-12+3
NVDcvs/cvs18 versions+17

Patches

🔴Vulnerability Details

3
GHSA
GHSA-g6wg-3fff-rr58: CVS 12022-04-29
CVEList
CVE-2004-1343: CVS 12005-04-27
OSV
CVE-2004-1343: CVS 12004-12-31

📋Vendor Advisories

1
Debian
CVE-2004-1343: cvs - CVS 1.12 and earlier on Debian GNU/Linux does not properly handle when a mapping...2004