CVE-2010-4539
published 2011-01-07CVE-2010-4539: The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote…
PriorityP428medium6.8CVSS 2.0
AVNACLAuSCNINAC
EPSS
5.14%
91.5th percentile
The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via vectors that trigger the walking of SVNParentPath collections.
Affected
117 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | subversion | <= 1.6.14 | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:C
osv6.8MEDIUM
vendor_apache6.8MEDIUM
vendor_debian6.8LOW
vendor_redhat6.8MEDIUM
vendor_ubuntu2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m28q-h289-m2g5: The walk function in repos
ghsa_unreviewed·2022-05-17
CVE-2010-4539 [MEDIUM] GHSA-m28q-h289-m2g5: The walk function in repos
The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via vectors that trigger the walking of SVNParentPath collections.
OSV
CVE-2010-4539: The walk function in repos
osv·2011-01-07·CVSS 6.8
CVE-2010-4539 [MEDIUM] CVE-2010-4539: The walk function in repos
The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via vectors that trigger the walking of SVNParentPath collections.
Ubuntu
Subversion vulnerabilities
vendor_ubuntu·2011-02-01·CVSS 2.1
CVE-2007-2448 [LOW] Subversion vulnerabilities
Title: Subversion vulnerabilities
It was discovered that Subversion incorrectly handled certain 'partial
access' privileges in rare scenarios. Remote authenticated users could use
this flaw to obtain sensitive information (revision properties). This issue
only applied to Ubuntu 6.06 LTS. (CVE-2007-2448)
It was discovered that the Subversion mod_dav_svn module for Apache did not
properly handle a named repository as a rule scope. Remote authenticated
users could use this flaw to bypass intended restrictions. This issue only
applied to Ubuntu 9.10, 10.04 LTS, and 10.10. (CVE-2010-3315)
It was discovered that the Subversion mod_dav_svn module for Apache
incorrectly handled the walk function. Remote authenticated users could use
this flaw to cause the service to crash, leading to a denial o
Red Hat
(mod_dav_svn): DoS (crash) by processing certain requests to display all available repositories to a web browser
vendor_redhat·2010-11-26·CVSS 6.8
CVE-2010-4539 [MEDIUM] (mod_dav_svn): DoS (crash) by processing certain requests to display all available repositories to a web browser
(mod_dav_svn): DoS (crash) by processing certain requests to display all available repositories to a web browser
The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via vectors that trigger the walking of SVNParentPath collections.
Package: subversion (Red Hat Enterprise Linux 4) - Not affected
Debian
CVE-2010-4539: subversion - The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Serve...
vendor_debian·2010·CVSS 6.8
CVE-2010-4539 [MEDIUM] CVE-2010-4539: subversion - The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Serve...
The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via vectors that trigger the walking of SVNParentPath collections.
Scope: local
bookworm: resolved (fixed in 1.6.12dfsg-4)
bullseye: resolved (fixed in 1.6.12dfsg-4)
forky: resolved (fixed in 1.6.12dfsg-4)
sid: resolved (fixed in 1.6.12dfsg-4)
trixie: resolved (fixed in 1.6.12dfsg-4)
Apache
Apache subversion: CVE-2010-4539
vendor_apache·CVSS 6.8
CVE-2010-4539 [MEDIUM] Apache subversion: CVE-2010-4539
Apache subversion: CVE-2010-4539
1.0.0-1.5.8, 1.6.0-1.6.13 mod_dav_svn potential crash when using SVNParentPath
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-4539 CVE-2010-4644 subversion various flaws [fedora-13]
bugzilla·2011-01-06·CVSS 6.8
CVE-2010-4539 [MEDIUM] CVE-2010-4539 CVE-2010-4644 subversion various flaws [fedora-13]
CVE-2010-4539 CVE-2010-4644 subversion various flaws [fedora-13]
fedora-13 tracking bug for subversion: see blocks bug list for full details of the security issue(s).
This bug is never intended to be made public, please put any public notes
in the 'blocks' bugs.
[bug automatically created by: add-tracking-bugs]
Discussion:
Adding parent bug CVE-2010-4644
New bodhi update url:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=667407,667763
---
subversion-1.6.15-1.fc13 has been submitted as an update for Fedora 13.
https://admin.fedoraproject.org/updates/subversion-1.6.15-1.fc13
---
subversion-1.6.15-1.fc13 has been pushed to the Fedora 13 testing repository. If problems still persist, please make note of it in this bug report.
If you want to test the update, you can
Bugzilla
CVE-2010-4539 Subversion (mod_dav_svn): DoS (crash) by processing certain requests to display all available repositories to a web browser
bugzilla·2011-01-05·CVSS 6.8
CVE-2010-4539 [MEDIUM] CVE-2010-4539 Subversion (mod_dav_svn): DoS (crash) by processing certain requests to display all available repositories to a web browser
CVE-2010-4539 Subversion (mod_dav_svn): DoS (crash) by processing certain requests to display all available repositories to a web browser
A NULL pointer dereference flaw was found in the way mod_dav_svn,
Apache httpd module for Subversion server, processed certain
requests to display collection of Subversion repositories,
available on particular host, when listing of repositories
(SVNListParentPath directive) was enabled. A remote user could
use this flaw to cause denial of service (particular httpd thread
crash).
References:
[1] http://svn.apache.org/repos/asf/subversion/tags/1.6.15/CHANGES
Upstream changeset:
[2] http://svn.apache.org/viewvc?view=revision&revision=1033166
Public PoC:
[3] http://svn.haxx.se/users/archive-2010-11/0084.shtml
Flaw exploitation note:
This flaw to be succ
http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053230.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-04/msg00000.htmlhttp://mail-archives.apache.org/mod_mbox/subversion-users/201011.mbox/%3C3923B919-C2BE-41AD-84ED-7207837FAD1A%40ncsa.illinois.edu%3Ehttp://mail-archives.apache.org/mod_mbox/www-announce/201011.mbox/%3CAANLkTi=5+NOi-Cp=fKCx6mAW-TofFVW=ikEQkXgQB8Bt%40mail.gmail.com%3Ehttp://openwall.com/lists/oss-security/2011/01/02/1http://openwall.com/lists/oss-security/2011/01/03/9http://openwall.com/lists/oss-security/2011/01/04/10http://openwall.com/lists/oss-security/2011/01/04/8http://openwall.com/lists/oss-security/2011/01/05/4http://secunia.com/advisories/42780http://secunia.com/advisories/42969http://secunia.com/advisories/43115http://secunia.com/advisories/43139http://secunia.com/advisories/43346http://svn.apache.org/repos/asf/subversion/tags/1.6.15/CHANGEShttp://svn.apache.org/viewvc?view=revision&revision=1033166http://www.mandriva.com/security/advisories?name=MDVSA-2011:006http://www.redhat.com/support/errata/RHSA-2011-0257.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0258.htmlhttp://www.securityfocus.com/bid/45655http://www.securitytracker.com/id?1024934http://www.ubuntu.com/usn/USN-1053-1http://www.vupen.com/english/advisories/2011/0015http://www.vupen.com/english/advisories/2011/0103http://www.vupen.com/english/advisories/2011/0162http://www.vupen.com/english/advisories/2011/0264https://bugzilla.redhat.com/show_bug.cgi?id=667407https://exchange.xforce.ibmcloud.com/vulnerabilities/64472http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053230.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-04/msg00000.htmlhttp://mail-archives.apache.org/mod_mbox/subversion-users/201011.mbox/%3C3923B919-C2BE-41AD-84ED-7207837FAD1A%40ncsa.illinois.edu%3Ehttp://mail-archives.apache.org/mod_mbox/www-announce/201011.mbox/%3CAANLkTi=5+NOi-Cp=fKCx6mAW-TofFVW=ikEQkXgQB8Bt%40mail.gmail.com%3Ehttp://openwall.com/lists/oss-security/2011/01/02/1http://openwall.com/lists/oss-security/2011/01/03/9http://openwall.com/lists/oss-security/2011/01/04/10http://openwall.com/lists/oss-security/2011/01/04/8http://openwall.com/lists/oss-security/2011/01/05/4http://secunia.com/advisories/42780http://secunia.com/advisories/42969http://secunia.com/advisories/43115http://secunia.com/advisories/43139http://secunia.com/advisories/43346http://svn.apache.org/repos/asf/subversion/tags/1.6.15/CHANGEShttp://svn.apache.org/viewvc?view=revision&revision=1033166http://www.mandriva.com/security/advisories?name=MDVSA-2011:006http://www.redhat.com/support/errata/RHSA-2011-0257.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0258.htmlhttp://www.securityfocus.com/bid/45655http://www.securitytracker.com/id?1024934http://www.ubuntu.com/usn/USN-1053-1http://www.vupen.com/english/advisories/2011/0015http://www.vupen.com/english/advisories/2011/0103http://www.vupen.com/english/advisories/2011/0162http://www.vupen.com/english/advisories/2011/0264https://bugzilla.redhat.com/show_bug.cgi?id=667407https://exchange.xforce.ibmcloud.com/vulnerabilities/64472
2011-01-07
Published