First published: Mon Jan 23 2012(Updated: )
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cvs Cvs | =1.11 | |
Cvs Cvs | =1.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.