Denial of Service Vulnerability in Perforce Server by Perforce
CVE-2008-1303

Currently unrated

Key Information:

Vendor

Perforce

Vendor
CVE Published:
12 March 2008

What is CVE-2008-1303?

The Perforce service (p4s.exe) in Perforce Server versions 2007.3/143793 and earlier is susceptible to a denial of service attack. Remote attackers can exploit this vulnerability by sending malformed commands, such as dm-FaultFile, dm-LazyCheck, dm-ResolvedFile, dm-OpenFile, and crypto, which leads to a NULL pointer dereference. This results in the abrupt termination of the service, causing disruption to users and operations reliant on the server.

References

EPSS Score

8% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.