Vulnerability Name: | CVE-2002-0092 (CCN-8366) | ||||||||
Assigned: | 2002-03-05 | ||||||||
Published: | 2002-03-05 | ||||||||
Updated: | 2016-10-18 | ||||||||
Summary: | CVS before 1.10.8 does not properly initialize a global variable, which allows remote attackers to cause a denial of service (server crash) via the diff capability. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-2002-0092 Source: VULN-DEV Type: UNKNOWN 20020220 Help needed with bufferoverflow in cvs Source: VULN-DEV Type: UNKNOWN 20020220 Re: [Fwd: Help needed with bufferoverflow in cvs] Source: CCN Type: RHSA-2002-026 Vulnerability in zlib library Source: CCN Type: CVS Web site Domain Home Page Source: DEBIAN Type: Patch, Vendor Advisory DSA-117 Source: DEBIAN Type: DSA-117 cvs -- improper variable initialization Source: XF Type: UNKNOWN cvs-global-var-dos(8366) Source: CCN Type: OSVDB ID: 2050 CVS Server Global Variable DoS Source: REDHAT Type: UNKNOWN RHSA-2002:026 Source: BID Type: UNKNOWN 4234 Source: CCN Type: BID-4234 CVS Server Global Variable Denial Of Service Vulnerability Source: XF Type: UNKNOWN cvs-global-var-dos(8366) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |