Vulnerability Name: | CVE-2003-0015 (CCN-11108) | ||||||||||||
Assigned: | 2003-01-20 | ||||||||||||
Published: | 2003-01-20 | ||||||||||||
Updated: | 2018-05-03 | ||||||||||||
Summary: | Double-free vulnerability in CVS 1.11.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed Directory request, as demonstrated by bypassing write checks to execute Update-prog and Checkin-prog commands. | ||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Type: | CWE-415 | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: CCN Type: FreeBSD Security Advisory FreeBSD-SA-03:01.cvs remotely exploitable vulnerability in cvs server Source: CCN Type: BugTraq Mailing List, Fri Jan 24 2003 - 09:52:41 CST Test program for CVS double-free. Source: CCN Type: e-matters Security Advisory 01/2003 CVS remote vulnerability Source: VULNWATCH Type: UNKNOWN 20030120 Advisory 01/2003: CVS remote vulnerability Source: CONFIRM Type: Broken Link http://ccvs.cvshome.org/servlets/NewsItemView?newsID=51&JServSessionIdservlets=5of2iuhr14 Source: CCN Type: CVS Web site Project Download List Source: MITRE Type: CNA CVE-2003-0015 Source: CCN Type: Conectiva Linux Announcement CLSA-2003:560 cvs -- Remote vulnerability Source: CCN Type: Conectiva Linux Announcement CLSA-2003:561 cvs -- Update: cvs remote double free() vulnerability Source: BUGTRAQ Type: UNKNOWN 20030122 [security@slackware.com: [slackware-security] New CVS packages available] Source: BUGTRAQ Type: UNKNOWN 20030124 Test program for CVS double-free. Source: BUGTRAQ Type: UNKNOWN 20030202 Exploit for CVS double free() for Linux pserver Source: FREEBSD Type: UNKNOWN FreeBSD-SA-03:01 Source: CCN Type: BugTraq Mailing List, 2003-02-02 11:27:23 Exploit for CVS double free() for Linux pserver Source: CCN Type: RHSA-2003-012 Updated CVS packages available Source: CCN Type: RHSA-2003-013 cvs security update Source: REDHAT Type: Patch, Vendor Advisory RHSA-2003:013 Source: MISC Type: Patch, Vendor Advisory http://security.e-matters.de/advisories/012003.html Source: CCN Type: Sun Alert ID: 50439 CVS Versions on all Sun Cobalt Legacy Products and Sun Linux 5.0.3 are Vulnerable to a "Double Free" Vulnerability Source: CCN Type: CERT Advisory CA-2003-02 Double-Free Bug in CVS Server Source: CERT Type: US Government Resource CA-2003-02 Source: CCN Type: CIAC Information Bulletin N-032 Double-Free Bug in Concurrent Versions System (CVS) Server Source: CIAC Type: UNKNOWN N-032 Source: DEBIAN Type: UNKNOWN DSA-233 Source: DEBIAN Type: DSA-233 cvs -- doubly freed memory Source: CCN Type: US-CERT VU#650937 Concurrent Versions System (CVS) server improperly deallocates memory Source: CERT-VN Type: Third Party Advisory, US Government Resource VU#650937 Source: CCN Type: Gentoo Linux Security Announcement 200301-12 cvs -- arbitrary code execution Source: CCN Type: SCO Security Advisory CSSA-2003-006.0 Linux: CVS double free vulnerability Source: CCN Type: Immunix OS Security Advisory IMNX-2003-7+-004-01 cvs Source: MANDRAKE Type: UNKNOWN MDKSA-2003:009 Source: CCN Type: OpenPKG-SA-2003.004 CVS Source: REDHAT Type: UNKNOWN RHSA-2003:012 Source: BID Type: UNKNOWN 6650 Source: CCN Type: BID-6650 CVS Directory Request Double Free Heap Corruption Vulnerability Source: CCN Type: slackware-security Mailing List, Tue, 21 Jan 2003 14:26:20 -0800 (PST) [slackware-security] New CVS packages available Source: CCN Type: TLSA-2003-8 Double-Free Bug in CVS Server Source: CCN Type: Concurrent Versions System News 2003-01-20: CVS 1.11.5 Released! (security update) Source: XF Type: UNKNOWN cvs-doublefree-memory-corruption(11108) Source: XF Type: UNKNOWN cvs-doublefree-memory-corruption(11108) Source: SUSE Type: SUSE-SA:2003:0007 cvs: remote system compromise | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Denotes that component is vulnerable | ||||||||||||
Oval Definitions | |||||||||||||
| |||||||||||||
BACK |