CVE-2003-0015
EPSS 37.0%cvs - doubly freed memory
發布日:2003/2/7修改日:2026/4/28
描述
Double-free vulnerability in CVS 1.11.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed Directory request, as demonstrated by bypassing write checks to execute Update-prog and Checkin-prog commands.
受影響套件(2)
- Debian/cvsfrom 0, < 1.11.2-5.1
- Debian/cvsfrom 0, < 1.11.1p1debian-8.1