VDB
CVE-2010-3846
CVE-2010-3846
PUBLISHED
CVSS 6.900000095367432 MEDIUM
Array index error in the apply_rcs_change function in rcs.c in CVS 1.11.23 allows local users to gain privileges via an RCS file containing crafted delta fragment changes that trigger a heap-based buffer overflow.
EPSS 0.39% · 32.0th percentile
Risk Scores
CVSS 2.0
6.900000095367432
EPSS Score
0.39%
32.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| nongnu | cvs | 1.11.23 |
Timeline
- Oct 28, 2010 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- 68952 vdb
- FEDORA-2010-16721 vendor-advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=642146 url
- http://cvs.savannah.gnu.org/viewvc/cvs/ccvs/src/rcs.c?r1=1.262.4.65&r2=1.262.4.66&sortby=rev url
- RHSA-2010:0918 vendor-advisory
- 42041 third-party-advisory
- FEDORA-2010-16600 vendor-advisory
- ADV-2010-2846 vdb
- 1024795 vdb
- ADV-2010-2869 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2010-3846 advisory
- https://access.redhat.com/errata/RHSA-2010:0918 url
- https://access.redhat.com/security/cve/CVE-2010-3846 url
- http://secunia.com/advisories/41079 url
- http://secunia.com/advisories/42409 url
- http://www.vupen.com/english/advisories/2010/2845 url
- http://www.vupen.com/english/advisories/2010/3080 url
- http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050212.html technical
- http://www.vupen.com/english/advisories/2010/2899 technical
- https://exchange.xforce.ibmcloud.com/vulnerabilities/62858 technical
…and 1 more