CVE-2013-1884
published 2013-05-02CVE-2013-1884: The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (segmentation fault and…
medium5CVSS 3.1
AVNACLAuNCNINAP
EXPLOIT
The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (segmentation fault and crash) via a log REPORT request with an invalid limit, which triggers an access of an uninitialized variable.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | >= 0 < 1.7.9-1 | 1.7.9-1 |
| apache | subversion | >= 0 < 1.7.9-1 | 1.7.9-1 |
| apache | subversion | >= 0 < 1.7.9-1 | 1.7.9-1 |
| apache | subversion | >= 0 < 1.7.9-1 | 1.7.9-1 |
| debian | subversion | < subversion 1.7.9-1 (bookworm) | subversion 1.7.9-1 (bookworm) |
CVSS provenance
nvd5.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM