Mailinglist Archive: opensuse-security (179 mails)

< Previous Next >
CVS Heap Overflow Vulnerability
  • From: Emiliano Sutil <emiliano@xxxxxxxxxx>
  • Date: Fri, 28 May 2004 10:12:17 +0200
  • Message-id: <40B6F461.3010202@xxxxxxxxxx>
Hello,

I have received this alert
US-CERT Technical Cyber Security Alert TA04-147A -- CVS Heap Overflow Vulnerability
Systems Affected
* Concurrent Versions System (CVS) versions prior to 1.11.16
* CVS Features versions prior to 1.12.8
I have this version on my system:
#cvs -v

Concurrent Versions System (CVS) 1.11.6 (client/server)

Copyright (c) 1989-2003 Brian Berliner, david d `zoo' zuhn,
Jeff Polk, and other authors

I suppose I have the problem that the CERT alerts, so where is the patch or the version that solves this problem?

Thanks


--
Emiliano Sutil GarcĂ­a




< Previous Next >
This Thread
Follow Ups