CVE-2015-3187
published 2015-08-12CVE-2015-3187: The svn_repos_trace_node_locations function in Apache Subversion before 1.7.21 and 1.8.x before 1.8.14, when path-based authorization is used, allows remote…
PriorityP422medium4CVSS 2.0
AVNACLAuSCPINAN
EPSS
6.46%
93.0th percentile
The svn_repos_trace_node_locations function in Apache Subversion before 1.7.21 and 1.8.x before 1.8.14, when path-based authorization is used, allows remote authenticated users to obtain sensitive path information by reading the history of a node that has been moved from a hidden path.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | subversion | <= 1.7.20 | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | — | — |
| apache | subversion | >= 0 < 1.9.0-1 | 1.9.0-1 |
| apache | subversion | >= 0 < 1.9.0-1 | 1.9.0-1 |
| apache | subversion | >= 0 < 1.9.0-1 | 1.9.0-1 |
| apache | subversion | >= 0 < 1.9.0-1 | 1.9.0-1 |
| apache | subversion | >= 0 < 1.8.8-1ubuntu3.2 | 1.8.8-1ubuntu3.2 |
| apple | xcode | <= 7.2.1 | — |
| apple | xcode | — | — |
| debian | subversion | < subversion 1.9.0-1 (bookworm) | subversion 1.9.0-1 (bookworm) |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
osv5.0MEDIUM
vendor_ubuntu5.0MEDIUM
vendor_apache4.0MEDIUM
vendor_debian4.0MEDIUM
vendor_redhat4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-c79q-h5wc-3724: The svn_repos_trace_node_locations function in Apache Subversion before 1
ghsa_unreviewed·2022-05-17
CVE-2015-3187 [MEDIUM] CWE-200 GHSA-c79q-h5wc-3724: The svn_repos_trace_node_locations function in Apache Subversion before 1
The svn_repos_trace_node_locations function in Apache Subversion before 1.7.21 and 1.8.x before 1.8.14, when path-based authorization is used, allows remote authenticated users to obtain sensitive path information by reading the history of a node that has been moved from a hidden path.
OSV
subversion vulnerabilities
osv·2015-08-20·CVSS 5.0
CVE-2014-3580 [MEDIUM] subversion vulnerabilities
subversion vulnerabilities
It was discovered that the Subversion mod_dav_svn module incorrectly
handled REPORT requests for a resource that does not exist. A remote
attacker could use this issue to cause the server to crash, resulting in a
denial of service. This issue only affected Ubuntu 12.04 LTS and Ubuntu
14.04 LTS. (CVE-2014-3580)
It was discovered that the Subversion mod_dav_svn module incorrectly
handled requests requiring a lookup for a virtual transaction name that
does not exist. A remote attacker could use this issue to cause the server
to crash, resulting in a denial of service. This issue only affected Ubuntu
14.04 LTS. (CVE-2014-8108)
Evgeny Kotkov discovered that the Subversion mod_dav_svn module incorrectly
handled large numbers of REPORT requests. A remote attacker cou
OSV
CVE-2015-3187: The svn_repos_trace_node_locations function in Apache Subversion before 1
osv·2015-08-12·CVSS 4.0
CVE-2015-3187 [MEDIUM] CVE-2015-3187: The svn_repos_trace_node_locations function in Apache Subversion before 1
The svn_repos_trace_node_locations function in Apache Subversion before 1.7.21 and 1.8.x before 1.8.14, when path-based authorization is used, allows remote authenticated users to obtain sensitive path information by reading the history of a node that has been moved from a hidden path.
Ubuntu
Subversion vulnerabilities
vendor_ubuntu·2015-08-20·CVSS 5.0
CVE-2014-3580 [MEDIUM] Subversion vulnerabilities
Title: Subversion vulnerabilities
Summary: Several security issues were fixed in Subversion.
It was discovered that the Subversion mod_dav_svn module incorrectly
handled REPORT requests for a resource that does not exist. A remote
attacker could use this issue to cause the server to crash, resulting in a
denial of service. This issue only affected Ubuntu 12.04 LTS and Ubuntu
14.04 LTS. (CVE-2014-3580)
It was discovered that the Subversion mod_dav_svn module incorrectly
handled requests requiring a lookup for a virtual transaction name that
does not exist. A remote attacker could use this issue to cause the server
to crash, resulting in a denial of service. This issue only affected Ubuntu
14.04 LTS. (CVE-2014-8108)
Evgeny Kotkov discovered that the Subversion mod_dav_svn module incorrec
Red Hat
subversion: svn_repos_trace_node_locations() reveals paths hidden by authz
vendor_redhat·2015-08-05·CVSS 4.0
CVE-2015-3187 [MEDIUM] CWE-200 subversion: svn_repos_trace_node_locations() reveals paths hidden by authz
subversion: svn_repos_trace_node_locations() reveals paths hidden by authz
The svn_repos_trace_node_locations function in Apache Subversion before 1.7.21 and 1.8.x before 1.8.14, when path-based authorization is used, allows remote authenticated users to obtain sensitive path information by reading the history of a node that has been moved from a hidden path.
It was found that when an SVN server (both svnserve and httpd with the mod_dav_svn module) searched the history of a file or a directory, it would disclose its location in the repository if that file or directory was not readable (for example, if it had been moved).
Statement: This issue affects the version of subversion as shipped with Red Hat Enterprise Linux 5. Red Hat Enterprise Linux 5 is now in Production 3 Phase of the suppo
Debian
CVE-2015-3187: subversion - The svn_repos_trace_node_locations function in Apache Subversion before 1.7.21 a...
vendor_debian·2015·CVSS 4.0
CVE-2015-3187 [MEDIUM] CVE-2015-3187: subversion - The svn_repos_trace_node_locations function in Apache Subversion before 1.7.21 a...
The svn_repos_trace_node_locations function in Apache Subversion before 1.7.21 and 1.8.x before 1.8.14, when path-based authorization is used, allows remote authenticated users to obtain sensitive path information by reading the history of a node that has been moved from a hidden path.
Scope: local
bookworm: resolved (fixed in 1.9.0-1)
bullseye: resolved (fixed in 1.9.0-1)
forky: resolved (fixed in 1.9.0-1)
sid: resolved (fixed in 1.9.0-1)
trixie: resolved (fixed in 1.9.0-1)
Apache
Apache subversion: CVE-2015-3187
vendor_apache·CVSS 4.0
CVE-2015-3187 [MEDIUM] Apache subversion: CVE-2015-3187
Apache subversion: CVE-2015-3187
-advisory.txt 1.7.0-1.7.20 and 1.8.0-1.8.13 Subversion servers, both httpd and svnserve, will reveal some paths that should be hidden by path-based authz.
Apple
CVE-2015-3187: Xcode 7.3
vendor_apple·CVSS 4.0
CVE-2015-3187 [MEDIUM] CVE-2015-3187: Xcode 7.3
Apple Security Update: About the security content of Xcode 7.3
Product: Xcode
Version: 7.3
CVE: CVE-2015-3187
Component: CVE-ID
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-3187 subversion: svn_repos_trace_node_locations() reveals paths hidden by authz [fedora-all]
bugzilla·2015-08-06·CVSS 4.0
CVE-2015-3187 [MEDIUM] CVE-2015-3187 subversion: svn_repos_trace_node_locations() reveals paths hidden by authz [fedora-all]
CVE-2015-3187 subversion: svn_repos_trace_node_locations() reveals paths hidden by authz [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multipl
Bugzilla
CVE-2015-3187 subversion: svn_repos_trace_node_locations() reveals paths hidden by authz
bugzilla·2015-07-27·CVSS 4.0
CVE-2015-3187 [MEDIUM] CVE-2015-3187 subversion: svn_repos_trace_node_locations() reveals paths hidden by authz
CVE-2015-3187 subversion: svn_repos_trace_node_locations() reveals paths hidden by authz
Upstream has reported the below security vulnerability in Subversion:
Summary
Subversion servers, both httpd and svnserve, will reveal some paths
that should be hidden by path-based authz. When a node is copied
from an unreadable location to a readable location the unreadable
path may be revealed. This vulnerablity only reveals the path, it
does not reveal the contents of the path.
Known vulnerable
Subversion 1.8.0 to 1.8.13
Subversion 1.7.0 to 1.7.20
All older versions
Known fixed
Subversion 1.8.14
Subversion 1.7.21
Details
The function svn_repos_trace_node_locations() follows the history of
a node through earlier revisions and shows any copies. It should
stop following history when an unread
http://lists.apple.com/archives/security-announce/2016/Mar/msg00003.htmlhttp://lists.opensuse.org/opensuse-updates/2015-08/msg00022.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1633.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1742.htmlhttp://subversion.apache.org/security/CVE-2015-3187-advisory.txthttp://www.debian.org/security/2015/dsa-3331http://www.securityfocus.com/bid/76273http://www.securitytracker.com/id/1033215http://www.ubuntu.com/usn/USN-2721-1https://security.gentoo.org/glsa/201610-05https://support.apple.com/HT206172http://lists.apple.com/archives/security-announce/2016/Mar/msg00003.htmlhttp://lists.opensuse.org/opensuse-updates/2015-08/msg00022.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1633.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1742.htmlhttp://subversion.apache.org/security/CVE-2015-3187-advisory.txthttp://www.debian.org/security/2015/dsa-3331http://www.securityfocus.com/bid/76273http://www.securitytracker.com/id/1033215http://www.ubuntu.com/usn/USN-2721-1https://security.gentoo.org/glsa/201610-05https://support.apple.com/HT206172
2015-08-12
Published