CVE-2010-0931: Input Validation
Published Mar 5, 2010
·Updated
The Perforce service (p4s.exe) in Perforce Server 2008.1 allows remote attackers to cause a denial of service (daemon crash) via crafted data, possibly involving a large sndbuf value.
Affected Software
1 affected component
Perforce Perforce Server=2008.1
Event History
Mar 5, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·07:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-0931?
CVE-2010-0931 has a severity rating that indicates a denial of service vulnerability that can crash the Perforce service.
2
How do I fix CVE-2010-0931?
To fix CVE-2010-0931, you should upgrade to a later version of Perforce Server that addresses the vulnerability.
3
What versions of Perforce Server are affected by CVE-2010-0931?
CVE-2010-0931 specifically affects Perforce Server version 2008.1.
4
What type of attack does CVE-2010-0931 allow?
CVE-2010-0931 allows remote attackers to perform a denial of service attack through crafted data.
5
Is CVE-2010-0931 exploitable from remote locations?
Yes, CVE-2010-0931 can be exploited by remote attackers to crash the Perforce service.