CVS 1.11.x - Directory Request Double-Free Heap Corruption

Author: Stefan Esser
type: remote
platform: linux
port: 
date_added: 2003-01-20
date_updated: 2012-10-28
verified: 1
codes: CVE-2003-0015;OSVDB-3227
tags: 
aliases: 
screenshot_url: 
application_url: 

source: https://www.securityfocus.com/bid/6650/info

CVS is prone to a double free vulnerability in the Directory requests. An attacker may potentially take advantage of this issue to cause heap memory to be corrupted with attacker-supplied values, which may result in execution of arbitrary code.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/22187.tar.gz
↑