Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2012-0804
Description:Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
Test IDs: 1.3.6.1.4.1.25623.1.0.70726   1.3.6.1.4.1.25623.1.0.71126   1.3.6.1.4.1.25623.1.0.71767   1.3.6.1.4.1.25623.1.0.72030   1.3.6.1.4.1.25623.1.0.72251   1.3.6.1.4.1.25623.1.0.123983   1.3.6.1.4.1.25623.1.0.120416   1.3.6.1.4.1.25623.1.0.863893   1.3.6.1.4.1.25623.1.0.870572   1.3.6.1.4.1.25623.1.0.840906   1.3.6.1.4.1.25623.1.0.831638   1.3.6.1.4.1.25623.1.0.881181   1.3.6.1.4.1.25623.1.0.863743   1.3.6.1.4.1.25623.1.1.4.2012.0311.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2012-0804
BugTraq ID: 51943
http://www.securityfocus.com/bid/51943
Debian Security Information: DSA-2407 (Google Search)
http://www.debian.org/security/2012/dsa-2407
https://security.gentoo.org/glsa/201701-44
http://www.mandriva.com/security/advisories?name=MDVSA-2012:044
https://bugzilla.redhat.com/show_bug.cgi?id=784141
http://www.osvdb.org/78987
RedHat Security Advisories: RHSA-2012:0321
http://rhn.redhat.com/errata/RHSA-2012-0321.html
http://www.securitytracker.com/id?1026719
http://secunia.com/advisories/47869
http://secunia.com/advisories/48063
http://secunia.com/advisories/48142
http://secunia.com/advisories/48150
SuSE Security Announcement: openSUSE-SU-2012:0310 (Google Search)
http://lists.opensuse.org/opensuse-updates/2012-02/msg00064.html
http://ubuntu.com/usn/usn-1371-1
XForce ISS Database: cvs-proxyconnect-bo(73097)
https://exchange.xforce.ibmcloud.com/vulnerabilities/73097




© 1998-2021 E-Soft Inc. All rights reserved.