CVE-2004-0414
Publication date 6 August 2004
Last updated 17 July 2025
Ubuntu priority
CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed “Entry” lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution.
Status
Package | Ubuntu Release | Status |
---|---|---|
cvs | 7.04 feisty |
Fixed 1.12.9-17
|
6.10 edgy |
Fixed 1.12.9-17
|
|
6.06 LTS dapper |
Fixed 1.12.9-17
|