First published: Thu May 05 2016(Updated: )
The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a crafted header in a (1) MOVE or (2) COPY request, involving an authorization check.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Subversion | <=1.8.15 | |
Apache Subversion | =1.9.0 | |
Apache Subversion | =1.9.1 | |
Apache Subversion | =1.9.2 | |
Apache Subversion | =1.9.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.