CVE-2003-0977 Information
Description
CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.
Reference
ftp://patches.sgi.com/support/free/security/advisories/20040103-01-U.asc ftp://patches.sgi.com/support/free/security/advisories/20040202-01-U.asc http://ccvs.cvshome.org/servlets/NewsItemView?newsID=84&JServSessionIdservlets=8u3x1myav1 http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000808 http://marc.info/?l=bugtraq&m=107168035515554&w=2 http://marc.info/?l=bugtraq&m=107540163908129&w=2 http://secunia.com/advisories/10601 http://www.debian.org/security/2004/dsa-422 http://www.mandriva.com/security/advisories?name=MDKSA-2003:112 http://www.redhat.com/support/errata/RHSA-2004-003.html http://www.redhat.com/support/errata/RHSA-2004-004.html https://exchange.xforce.ibmcloud.com/vulnerabilities/13929 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A11528 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A855 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A866
Share on: