Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Debian 7 Wheezy DLA-1056-1 Critical: Command Injection in CVS Resolved

debian lts
Calendar Grey August 13, 2017
Dist Debian Esm H88
Enhance your Debian system by updating cvs packages to mitigate command injection vulnerabilities, thereby strengthening your overall security framework.
It was discovered that there was a command injection vulnerability in the CVS revision control system

Summary

For Debian 7 "Wheezy", this issue has been fixed in cvs version
2:1.12.13+real-9+deb7u1.

We recommend that you upgrade your cvs packages. Thanks to Thorsten Glaser
for preparing and testing this upload.


Regards,

- --
,'`.
: :' : Chris Lamb
`. `'` lamby@debian.org / chris-lamb.co.uk
`-



Severity
critical
Lowest
Low
Medium
High
Critical

Package: cvs
Version: 2:1.12.13+real-9+deb7u1
CVE ID: CVE-2017-12836
Debian Bug: #871810

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here