CVE-2008-1302: Medium severity microsoft windows operating system vulnerability
The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and earlier allows remote attackers to cause a denial of service (daemon crash) via a (1) server-DiffFile or (2) server-ReleaseFile command with a large integer value, which is used in an array initialization calculation, and leads to invalid memory access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1302?
CVE-2008-1302 is classified as a denial of service vulnerability that can crash the Perforce service.
How do I fix CVE-2008-1302?
To fix CVE-2008-1302, upgrade to Perforce Server 2007.4 or later, which addresses this vulnerability.
What versions of Perforce are affected by CVE-2008-1302?
CVE-2008-1302 affects Perforce Server versions 2007.3 and earlier.
Can CVE-2008-1302 be exploited remotely?
Yes, CVE-2008-1302 can be exploited remotely by sending specific commands with large integer values to the Perforce service.
What are the potential consequences of exploiting CVE-2008-1302?
Exploiting CVE-2008-1302 can lead to a denial of service, causing the Perforce daemon to crash.