CVE-2012-0804

EPSS 5.7%

cvs - heap overflow

Published: 5/29/2012Modified: 4/28/2026

Description

Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.

Affected packages (3)

References (2)