VDB
CVE-2010-3846
CVE-2010-3846
PUBLISHED
CVSS 6.900000095367432 MEDIUM
Array index error in the apply_rcs_change function in rcs.c in CVS 1.11.23 allows local users to gain privileges via an RCS file containing crafted delta fragment changes that trigger a heap-based buffer overflow.
EPSS 0.13% · 31.9th percentile
Risk Scores
CVSS v2.0
6.900000095367432
EPSS Score
0.13%
31.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| nongnu | cvs | 1.11.23 |
Timeline
- Oct 28, 2010 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 3, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 17, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 1, 2023 EPSS Score
- May 24, 2023 EPSS Score
References
- 42041 third-party-advisory
- FEDORA-2010-16600 vendor-advisory
- FEDORA-2010-16599 vendor-advisory
- ADV-2010-2846 vdb
- 44528 vdb
- 42409 third-party-advisory
- 68952 vdb
- cvs-applyrcschange-bo(62858) vdb
- FEDORA-2010-16721 vendor-advisory
- ADV-2010-2845 vdb
- 1024795 vdb
- https://bugzilla.redhat.com/show_bug.cgi?id=642146 url
- ADV-2010-3080 vdb
- ADV-2010-2869 vdb
- http://cvs.savannah.gnu.org/viewvc/cvs/ccvs/src/rcs.c?r1=1.262.4.65&r2=1.262.4.66&sortby=rev url
- 41079 third-party-advisory
- ADV-2010-2899 vdb
- RHSA-2010:0918 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2010-3846 advisory
- https://access.redhat.com/errata/RHSA-2010:0918 url
…and 1 more