Back to Database
Status published
Medium
CVE-2002-0092
CVS before 1.10.8 does not properly initialize a global variable,...
Vulnerability Description
CVS before 1.10.8 does not properly initialize a global variable, which allows remote attackers to cause a denial of service (server crash) via the diff capability.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2002-0092
Credits & Attribution
No credits recorded in the NVD database.
References
More from cvs
View All →CVE-2012-0804
Heap-based buffer overflow in the proxy_connect function in src/client.c in...
Critical
10
CVE-2005-2693
cvsbug in CVS 1.12.12 and earlier creates temporary files insecurely,...
Medium
4.6
CVE-2005-0753
Buffer overflow in CVS before 1.11.20 allows remote attackers to...
High
7.5
CVE-2004-1471
Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8,...
High
7.1
CVE-2004-1343
CVS 1.12 and earlier on Debian GNU/Linux does not properly...
Medium
5
Affected Vendor
Affected Software
cvs
Vulnerable Versions:
0
Timeline
Official Publish:
June 25th, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.