CVE-2004-0180
Publication date 1 June 2004
Last updated 24 July 2024
Ubuntu priority
The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405.
Status
Package | Ubuntu Release | Status |
---|---|---|
cvs | 7.04 feisty |
Fixed 1.12.9-17
|
6.10 edgy |
Fixed 1.12.9-17
|
|
6.06 LTS dapper |
Fixed 1.12.9-17
|