CVE-2004-1471

EPSS 5.9%
Published: 12/31/2004Modified: 4/28/2026

Description

Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16 allows remote attackers with CVSROOT commit access to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a wrapper line.

Affected packages (1)

References (1)