CVS is a version-control system with a narrow but historically significant footprint, and the single CVS product is the locus of its vulnerability disclosures. The recurring weakness classes—memory-buffer boundary violations and double-free conditions—reflect the native-code implementation and parsing complexity inherent to a distributed repository tool that processes untrusted input from remote clients and local working directories, and public exploit code has frequently accompanied its disclosures. Live severity, exploitation, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cvs over time
Signals from CVEs in this vendor scope (18 CVEs).
18 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0396HIGH Heap-based buffer overflow in CVS 1.11.x up to 1.11.15, and 1.12.x up to 1.12.7, when using the pserver mechanism allows remote attackers to execute arbitrary code via Entry lines. | Jun 14, 2004 | 7.5 | 65 | NO | YES |
CVE-2003-0015HIGH Double-free vulnerability in CVS 1.11.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed Directory request, as d | Feb 7, 2003 | 7.5 | 48 | NO | YES |
CVE-2004-0416HIGH Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code. | Aug 6, 2004 | 10.0 | 41 | NO | YES |
CVE-2004-1471HIGH Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16 allows remote attackers with CVSROOT commit access to cause a denial of service (a | Dec 31, 2004 | 7.1 | 36 | NO | YES |
CVE-2012-0804HIGH Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly exe | May 29, 2012 | 10.0 | 35 | NO | NO |
CVE-2000-0680HIGH The CVS 1.10.8 server does not properly restrict users from creating arbitrary Checkin.prog or Update.prog programs, which allows remote CVS committers to modify or create Trojan h | Oct 20, 2000 | 7.2 | 27 | NO | YES |
CVE-2004-0414HIGH CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial o | Aug 6, 2004 | 10.0 | 26 | NO | NO |
CVE-2004-0418HIGH serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote attackers to perform an "out-of-bounds" wri | Aug 6, 2004 | 10.0 | 26 | NO | NO |
CVE-2005-0753HIGH Buffer overflow in CVS before 1.11.20 allows remote attackers to execute arbitrary code. | Apr 18, 2005 | 7.5 | 22 | NO | NO |
CVE-2004-1342HIGH CVS 1.12 and earlier on Debian GNU/Linux, when using the repouid patch, allows remote attackers to bypass authentication via the pserver access method. | Apr 27, 2005 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (18 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cvs.
Media articles that mention a CVE ID that affects a product developed by Cvs — matched by CVE ID, not by vendor name.