Vulnerability Assessment & Network Security Forums

If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.

Home >> Browse Vulnerability Assessment Database >> Slackware Local Security Checks >> SSA-2004-108-02 cvs security update

Vulnerability Assessment Details

SSA-2004-108-02 cvs security update

Vulnerability Assessment Summary
SSA-2004-108-02 cvs security update

Detailed Explanation for this Vulnerability Assessment

CVS is a client/server version control system. As a server, it
is used to host source code repositories. As a client, it is
used to access such repositories. This advisory affects both uses
of CVS.

A security problem which could permit a server to create arbitrary
files on a client machine, and another security problem which may
permit a client to view files outside of the CVS repository have
been fixed with the release of cvs-1.11.15.

Any sites running CVS should upgrade to the new CVS package.

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Michel Arboi

Cables, Connectors


No Discussions have been posted on this vulnerability.