FreeBSD Security Advisory 2003.1...

- AV AC AU C I A
发布: 2003-02-05
修订: 2025-04-13

FreeBSD Security Advisory FreeBSD-SA-03:01 - It has been found that the CVS server can be tricked to free memory more then once, which can be used for remote code execution. Additionally, the CVS server allowed clients with write access to specify arbitrary commands to execute as part of an update (update-prog) or commit (checkin-prog). This behavior has been restricted. This affects all FreeBSD versions prior to 4.6-RELEASE-p7, 4.7-RELEASE-p4 and 5.0-RELEASE-p1.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息