CVE-2015-0248
published 2015-04-08CVE-2015-0248: The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service…
PriorityP429medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
12.75%
95.8th percentile
The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.
Affected
72 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_apache5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
vendor_ubuntu5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8pfv-rvrh-7fhw: The (1) mod_dav_svn and (2) svnserve servers in Subversion 1
ghsa_unreviewed·2022-05-14
CVE-2015-0248 [MEDIUM] GHSA-8pfv-rvrh-7fhw: The (1) mod_dav_svn and (2) svnserve servers in Subversion 1
The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.
OSV
subversion vulnerabilities
osv·2015-08-20·CVSS 5.0
CVE-2014-3580 [MEDIUM] subversion vulnerabilities
subversion vulnerabilities
It was discovered that the Subversion mod_dav_svn module incorrectly
handled REPORT requests for a resource that does not exist. A remote
attacker could use this issue to cause the server to crash, resulting in a
denial of service. This issue only affected Ubuntu 12.04 LTS and Ubuntu
14.04 LTS. (CVE-2014-3580)
It was discovered that the Subversion mod_dav_svn module incorrectly
handled requests requiring a lookup for a virtual transaction name that
does not exist. A remote attacker could use this issue to cause the server
to crash, resulting in a denial of service. This issue only affected Ubuntu
14.04 LTS. (CVE-2014-8108)
Evgeny Kotkov discovered that the Subversion mod_dav_svn module incorrectly
handled large numbers of REPORT requests. A remote attacker cou
OSV
CVE-2015-0248: The (1) mod_dav_svn and (2) svnserve servers in Subversion 1
osv·2015-04-08·CVSS 5.0
CVE-2015-0248 [MEDIUM] CVE-2015-0248: The (1) mod_dav_svn and (2) svnserve servers in Subversion 1
The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.
CISA ICS
Yokogawa CENTUM and ProSafe-RS
cisa_ics·2022-05-03·CVSS 5.0
[MEDIUM] Yokogawa CENTUM and ProSafe-RS
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Yokogawa CENTUM and ProSafe-RS
Last RevisedMay 03, 2022
Alert CodeICSA-22-123-01
## 1. EXECUTIVE SUMMARY
- CVSS v3 7.5
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Yokogawa
- Equipment: CENTUM and ProSafe-RS
- Vulnerabilities: OS Command Injection, Improper Authentication, NULL Pointer Dereference, Improper Input Validation, Resource Management Errors
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities may allow leakage/tampering of data, cause a denial-of-service condition, or allow a local attacker to execute arbitrary programs.
#
Ubuntu
Subversion vulnerabilities
vendor_ubuntu·2015-08-20·CVSS 5.0
CVE-2014-3580 [MEDIUM] Subversion vulnerabilities
Title: Subversion vulnerabilities
Summary: Several security issues were fixed in Subversion.
It was discovered that the Subversion mod_dav_svn module incorrectly
handled REPORT requests for a resource that does not exist. A remote
attacker could use this issue to cause the server to crash, resulting in a
denial of service. This issue only affected Ubuntu 12.04 LTS and Ubuntu
14.04 LTS. (CVE-2014-3580)
It was discovered that the Subversion mod_dav_svn module incorrectly
handled requests requiring a lookup for a virtual transaction name that
does not exist. A remote attacker could use this issue to cause the server
to crash, resulting in a denial of service. This issue only affected Ubuntu
14.04 LTS. (CVE-2014-8108)
Evgeny Kotkov discovered that the Subversion mod_dav_svn module incorrec
Red Hat
subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers
vendor_redhat·2015-03-31·CVSS 5.0
CVE-2015-0248 [MEDIUM] CWE-617 subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers
subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers
The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.
An assertion failure flaw was found in the way the SVN server processed certain requests with dynamically evaluated revision numbers. A remote attacker could use this flaw to cause the SVN server (both svnserve and httpd with the mod_dav_svn module) to crash.
Statement: Red Hat Enterprise Linux 5 is now in Production 3 Phase of the support and maintenance life cycle. This has been rated as having Moderat
Debian
CVE-2015-0248: subversion - The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 ...
vendor_debian·2015·CVSS 5.0
CVE-2015-0248 [MEDIUM] CVE-2015-0248: subversion - The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 ...
The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.
Scope: local
bookworm: resolved (fixed in 1.8.10-6)
bullseye: resolved (fixed in 1.8.10-6)
forky: resolved (fixed in 1.8.10-6)
sid: resolved (fixed in 1.8.10-6)
trixie: resolved (fixed in 1.8.10-6)
Apache
Apache subversion: CVE-2015-0248
vendor_apache·CVSS 5.0
CVE-2015-0248 [MEDIUM] Apache subversion: CVE-2015-0248
Apache subversion: CVE-2015-0248
-advisory.txt 1.6.0-1.7.19 and 1.8.0-1.8.11 Subversion mod_dav_svn and svnserve are vulnerable to a remotely triggerable assertion DoS vulnerability for certain requests with dynamically evaluated revision numbers
Apple
CVE-2015-0248: Xcode 7.0
vendor_apple·CVSS 5.0
CVE-2015-0248 [MEDIUM] CVE-2015-0248: Xcode 7.0
Apple Security Update: About the security content of Xcode 7.0
Product: Xcode
Version: 7.0
CVE: CVE-2015-0248
Component: CVE-2015-0248
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-0248 subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers [fedora-all]
bugzilla·2015-03-31·CVSS 5.0
CVE-2015-0248 [MEDIUM] CVE-2015-0248 subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers [fedora-all]
CVE-2015-0248 subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit
Bugzilla
CVE-2015-0248 subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers
bugzilla·2015-03-24·CVSS 5.0
CVE-2015-0248 [MEDIUM] CVE-2015-0248 subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers
CVE-2015-0248 subversion: (mod_dav_svn) remote denial of service with certain requests with dynamically evaluated revision numbers
Summary:
Subversion's mod_dav_svn and svnserve servers will trigger an assertion
while processing some requests with special parameters, which are evaluated
on the server side. Assertion will cause svnserve process or the process
hosting mod_dav_svn module (Apache) to abort.
This can lead to a DoS. There are no known instances of this problem
being exploited in the wild, but an exploit has been tested.
Details:
Subversion's http:// and svn:// protocol support includes certain request
types with parameters, which are evaluated on the server side. As an
example, sometimes clients need to trace the history of the object to its
origin, while not knowing the ex
http://lists.apple.com/archives/security-announce/2015/Sep/msg00002.htmlhttp://lists.opensuse.org/opensuse-updates/2015-04/msg00008.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1633.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1742.htmlhttp://subversion.apache.org/security/CVE-2015-0248-advisory.txthttp://www.debian.org/security/2015/dsa-3231http://www.mandriva.com/security/advisories?name=MDVSA-2015:192http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.htmlhttp://www.securityfocus.com/bid/74260http://www.securitytracker.com/id/1033214http://www.ubuntu.com/usn/USN-2721-1https://security.gentoo.org/glsa/201610-05https://support.apple.com/HT205217http://lists.apple.com/archives/security-announce/2015/Sep/msg00002.htmlhttp://lists.opensuse.org/opensuse-updates/2015-04/msg00008.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1633.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1742.htmlhttp://subversion.apache.org/security/CVE-2015-0248-advisory.txthttp://www.debian.org/security/2015/dsa-3231http://www.mandriva.com/security/advisories?name=MDVSA-2015:192http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.htmlhttp://www.securityfocus.com/bid/74260http://www.securitytracker.com/id/1033214http://www.ubuntu.com/usn/USN-2721-1https://security.gentoo.org/glsa/201610-05https://support.apple.com/HT205217
2015-04-08
Published