Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!Close

CVE-2004-0405

Published: 1 June 2004

CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client requests, a different vulnerability than CVE-2004-0180.

Priority

Unknown

Status

Package Release Status
cvs
Launchpad, Ubuntu, Debian
dapper
Released (1.12.9-17)
edgy
Released (1.12.9-17)
feisty
Released (1.12.9-17)
upstream Needs triage

gutsy
Released (1.12.9-17)