The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2004-04-16T04:00:00
Updated: 2024-08-08T00:10:03.820Z
Reserved: 2004-02-25T00:00:00
Link: CVE-2004-0180

No data.

Status : Deferred
Published: 2004-06-01T04:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2004-0180
