Back to search
CVE-2012-0804
Published: May 29, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
openSUSE-SU-2012:0310
vendor-advisory
x_refsource_SUSE
1026719
vdb-entry
x_refsource_SECTRACK
48150
third-party-advisory
x_refsource_SECUNIA
cvs-proxyconnect-bo(73097)
vdb-entry
x_refsource_XF
RHSA-2012:0321
vendor-advisory
x_refsource_REDHAT
MDVSA-2012:044
vendor-advisory
x_refsource_MANDRIVA
78987
vdb-entry
x_refsource_OSVDB
48142
third-party-advisory
x_refsource_SECUNIA
USN-1371-1
vendor-advisory
x_refsource_UBUNTU
47869
third-party-advisory
x_refsource_SECUNIA
GLSA-201701-44
vendor-advisory
x_refsource_GENTOO
https://bugzilla.redhat.com/show_bug.cgi?id=784141
x_refsource_MISC
DSA-2407
vendor-advisory
x_refsource_DEBIAN
51943
vdb-entry
x_refsource_BID
48063
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now