- Description
- The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (segmentation fault and crash) via a log REPORT request with an invalid limit, which triggers an access of an uninitialized variable.
- Source
- secalert@redhat.com
- NVD status
- Modified
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
- nvd@nist.gov
- CWE-119
- Hype score
- Not currently trending
- Comment
- -
- Impact
- Per http://lists.opensuse.org/opensuse-updates/2013-04/msg00095.html "Affected Products: openSUSE 12.3 openSUSE 12.2 openSUSE 12.1"
- Solution
- Per http://lists.opensuse.org/opensuse-updates/2013-04/msg00095.html "Affected Products: openSUSE 12.3 openSUSE 12.2 openSUSE 12.1"
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:apache:subversion:1.7.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8D102460-B5D5-46C4-8021-7C3510A5FCF3"
},
{
"criteria": "cpe:2.3:a:apache:subversion:1.7.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "92265E60-7BBF-4E8E-A438-4132D8FD57BB"
},
{
"criteria": "cpe:2.3:a:apache:subversion:1.7.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "346DE008-472F-47E1-8B96-F968C7D0A003"
},
{
"criteria": "cpe:2.3:a:apache:subversion:1.7.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4C9BDB22-29E0-48A3-8765-FAC6A3442A35"
},
{
"criteria": "cpe:2.3:a:apache:subversion:1.7.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FA5EB3A7-DE33-42CB-9B5E-646B9D4FFBFB"
},
{
"criteria": "cpe:2.3:a:apache:subversion:1.7.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F63AB9E5-FD99-40A8-B24F-623BDDBCA427"
},
{
"criteria": "cpe:2.3:a:apache:subversion:1.7.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0CEA6C3E-C41B-4EF9-84E1-72BC6B72D1C6"
},
{
"criteria": "cpe:2.3:a:apache:subversion:1.7.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B0B873C1-E7D6-4E55-A5A7-85000B686071"
}
],
"operator": "OR"
}
]
}
]